Zscaler Security Advisories

Security Advisory - April 08, 2014

Zscaler Protects against Internet Explorer Memory Corruption

Zscaler, working with Microsoft through the MAPPs program, has proactively deployed protections for the following 4 vulnerabilities included in the April 2014 Microsoft security bulletins. Zscaler will continue to monitor exploits associated with all vulnerabilities in the April release and deploy additional protections as necessary.

MS14-018 - Internet Explorer Memory Corruption Vulnerability

Severity: Critical
Affected Software

  • Internet Explorer 6-11

CVE-2014-1751 – IE Memory Corruption Vulnerability
CVE-2014-1752 – IE Memory Corruption Vulnerability
CVE-2014-1753 – IE Memory Corruption Vulnerability
CVE-2014-1755 – IE Memory Corruption Vulnerability

Description: Remote code execution vulnerabilities exist when Internet Explorer improperly accesses objects in memory. These vulnerabilities could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user.