Summary
Determina Security Research has discovered a denial of service vulnerability in multiple ActiveX controls included in Internet Explorer. This vulnerability can be exploited by a malicious web page and results in a termination of the Internet Explorer process. Our analysis indicates that remote code execution is unlikely. The vulnerable ActiveX controls are installed by default with all versions of Internet Explorer on Windows 2000, XP, 2003 and Vista.
Credit:
The information has been provided by Alexander Sotirov.
The original article can be found at: http://www.determina.com/security.research/vulnerabilities/activex-bgcolor.html
Summary
Determina Security Research has discovered a denial of service vulnerability in multiple ActiveX controls included in Internet Explorer. This vulnerability can be exploited by a malicious web page and results in a termination of the Internet Explorer process. Our analysis indicates that remote code execution is unlikely. The vulnerable ActiveX controls are installed by default with all versions of Internet Explorer on Windows 2000, XP, 2003 and Vista.
网管联盟bitsCN_com
Credit:
The information has been provided by Alexander Sotirov.
The original article can be found at: http://www.determina.com/security.research/vulnerabilities/activex-bgcolor.html