Microsoft · Internet Explorer · CVE-2014-0281
**Name of the Vulnerable Software and Affected Versions**
Microsoft Internet Explorer versions 8 through 11
**Description**
The issue is related to a use-after-free error when handling a CTreeNode object, allowing an attacker to execute arbitrary code or cause a denial of service via a crafted web site. This occurs due to improper memory access, potentially corrupting memory and enabling an attacker to execute arbitrary code in the context of the current user.
**Recommendations**
For Microsoft Internet Explorer versions 8 through 11, at the moment, there is no information about a newer version that contains a fix for this vulnerability.