Unrated severityNVD Advisory· Published Jul 20, 2009· Updated Jun 16, 2026
CVE-2009-2536
CVE-2009-2536
Description
Microsoft Internet Explorer 5 through 8 allows remote attackers to cause a denial of service (memory consumption and application crash) via a large integer value for the length property of a Select object, a related issue to CVE-2009-1692.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:microsoft:internet_explorer:*:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:microsoft:internet_explorer:*:*:*:*:*:*:*:*range: <=8
- cpe:2.3:a:microsoft:internet_explorer:5:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:internet_explorer:6:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:internet_explorer:7:*:*:*:*:*:*:*
- (no CPE)range: 5 through 8
Patches
Vulnerability mechanics
References
7- www.g-sec.lu/one-bug-to-rule-them-all.htmlnvdExploit
- www.exploit-db.com/exploits/9160nvd
- www.securityfocus.com/archive/1/504969/100/0/threadednvd
- www.securityfocus.com/archive/1/504988/100/0/threadednvd
- www.securityfocus.com/archive/1/504989/100/0/threadednvd
- www.securityfocus.com/archive/1/505006/100/0/threadednvd
- exchange.xforce.ibmcloud.com/vulnerabilities/52870nvd
News mentions
0No linked articles in our index yet.