Microsoft Internet Explorer MHTML URI Buffer Overflow Vulnerability

Microsoft Internet Explorer MHTML URI Buffer Overflow Vulnerability

am 03.06.2006 04:52:51 von Imhotep

Microsoft Internet Explorer MHTML URI Buffer Overflow Vulnerability

"Microsoft Internet Explorer is susceptible to a remote buffer-overflow
vulnerability in 'INETCOMM.DLL'. The application fails to properly
bounds-check user-supplied input data before copying it into an
insufficiently sized memory buffer.

Remote attackers may exploit this issue to crash applications that use the
affected library. This includes Internet Explorer, Windows Explorer, and
possibly others. Remote code execution may also be possible, but this has
not been confirmed. "


http://www.securityfocus.com/bid/18198/discuss

--Imhotep

-------------------------------------------------------
MSCE = "(M)ust (C)all (S)omeone (E)lse
-------------------------------------------------------