According to a Microsoft security advisory, IE 6 and 7 suffer from an invalid pointer reference vulnerability, which is a memory-related flaw that attackers can leverage to inject and execute code on a victim computer.
Source:Upgrade to IE 8 to avoid new zero day vulnerability




