CVE-2024-38112 is a software vulnerability discovered in the MSHTML (Trident) engine, primarily used by the now-retired Internet Explorer browser. Despite this, newer Windows 10 and Windows 11 systems, where Edge is the default browser, are also susceptible to attacks exploiting this flaw. This vulnerability was first publicly disclosed via Microsoft's Security Update Guide in July 2024, illustrating the potential for platform spoofing.
The Advanced Persistent Threat (APT) group known as Void Banshee exploited this vulnerability, targeting victims across North America, Europe, and Southeast Asia. The group's use of CVE-2024-38112 was detailed in a blog post published by Trend Micro on July 15, 2024. This provided further insight into how the APT leveraged the flaw, highlighting the severity and widespread implications of the issue.
In response to the discovery and exploitation of CVE-2024-38112, Microsoft and Trend Micro collaborated closely to address the issue. Their efforts culminated in the release of an official patch by Microsoft on July 9, 2024. This patch mitigates the risk posed by the vulnerability, protecting users from potential platform spoofing and subsequent cyberattacks.
Description last updated: 2024-09-16T19:15:37.007Z