Double free vulnerability in mshtml.dll for certain versions of Internet Explorer 6.x allows remote attackers to cause a denial of service (application crash) via a malformed GIF image.
References
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:46
Type | Values Removed | Values Added |
---|---|---|
References | () http://lists.grok.org.uk/pipermail/full-disclosure/2003-September/009445.html - Broken Link | |
References | () http://lists.grok.org.uk/pipermail/full-disclosure/2003-September/009473.html - Broken Link | |
References | () http://lists.grok.org.uk/pipermail/full-disclosure/2003-September/009506.html - Broken Link | |
References | () http://www.ciac.org/ciac/bulletins/o-191.shtml - Broken Link | |
References | () http://www.kb.cert.org/vuls/id/685364 - Third Party Advisory, US Government Resource | |
References | () http://www.securityfocus.com/bid/8530 - Broken Link, Third Party Advisory, VDB Entry, Vendor Advisory | |
References | () http://www.us-cert.gov/cas/techalerts/TA04-212A.html - Broken Link, Third Party Advisory, US Government Resource | |
References | () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-025 - Patch, Vendor Advisory | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/16804 - Third Party Advisory, VDB Entry | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1793 - Broken Link | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A206 - Broken Link | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2100 - Broken Link | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A212 - Broken Link | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A236 - Broken Link | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A509 - Broken Link | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A517 - Broken Link |
02 Feb 2024, 15:23
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:microsoft:internet_explorer:6.0:*:*:*:*:*:*:* cpe:2.3:a:microsoft:outlook:2002:sp2:*:*:*:*:*:* cpe:2.3:a:microsoft:internet_explorer:5.5:*:*:*:*:*:*:* cpe:2.3:a:microsoft:outlook:2002:*:*:*:*:*:*:* cpe:2.3:a:microsoft:outlook:2002:sp1:*:*:*:*:*:* cpe:2.3:a:microsoft:internet_explorer:5.5:sp1:*:*:*:*:*:* cpe:2.3:a:microsoft:internet_explorer:5.0.1:sp2:*:*:*:*:*:* cpe:2.3:a:microsoft:outlook:2000:sr1:*:*:*:*:*:* cpe:2.3:a:microsoft:ie:6.0:sp1:*:*:*:*:*:* cpe:2.3:a:microsoft:outlook:2000:*:*:*:*:*:*:* cpe:2.3:a:microsoft:internet_explorer:5.0.1:sp1:*:*:*:*:*:* |
cpe:2.3:o:microsoft:windows_98:-:*:*:*:*:*:*:* cpe:2.3:a:microsoft:internet_explorer:6.0:-:*:*:*:*:*:* cpe:2.3:a:microsoft:internet_explorer:5.01:sp2:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_me:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_nt:4.0:sp6a:*:*:server:*:*:* cpe:2.3:o:microsoft:windows_nt:4.0:sp6:*:*:terminal_server:*:*:* cpe:2.3:o:microsoft:windows_98se:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_server_2003:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_xp:-:sp1:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_xp:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_nt:4.0:sp6a:*:*:workstation:*:*:* cpe:2.3:a:microsoft:internet_explorer:5.01:sp4:*:*:*:*:*:* cpe:2.3:a:microsoft:internet_explorer:5.01:sp3:*:*:*:*:*:* cpe:2.3:a:microsoft:internet_explorer:6.0:sp1:*:*:*:*:*:* cpe:2.3:a:microsoft:outlook:2000:sp4:*:*:*:*:*:* |
References | (OVAL) https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2100 - Broken Link | |
References | (OVAL) https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A206 - Broken Link | |
References | (OVAL) https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A212 - Broken Link | |
References | (MS) https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-025 - Patch, Vendor Advisory | |
References | (BID) http://www.securityfocus.com/bid/8530 - Broken Link, Third Party Advisory, VDB Entry, Vendor Advisory | |
References | (CIAC) http://www.ciac.org/ciac/bulletins/o-191.shtml - Broken Link | |
References | (OVAL) https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A236 - Broken Link | |
References | (CERT) http://www.us-cert.gov/cas/techalerts/TA04-212A.html - Broken Link, Third Party Advisory, US Government Resource | |
References | (FULLDISC) http://lists.grok.org.uk/pipermail/full-disclosure/2003-September/009473.html - Broken Link | |
References | (OVAL) https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A509 - Broken Link | |
References | (FULLDISC) http://lists.grok.org.uk/pipermail/full-disclosure/2003-September/009445.html - Broken Link | |
References | (FULLDISC) http://lists.grok.org.uk/pipermail/full-disclosure/2003-September/009506.html - Broken Link | |
References | (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/16804 - Third Party Advisory, VDB Entry | |
References | (OVAL) https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1793 - Broken Link | |
References | (OVAL) https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A517 - Broken Link | |
First Time |
Microsoft windows Me
Microsoft windows Xp Microsoft windows 98se Microsoft windows Nt Microsoft windows 98 Microsoft windows Server 2003 |
|
CWE | CWE-415 | |
CVSS |
v2 : v3 : |
v2 : 10.0
v3 : 7.8 |
Information
Published : 2004-07-27 04:00
Updated : 2024-11-20 23:46
NVD link : CVE-2003-1048
Mitre link : CVE-2003-1048
CVE.ORG link : CVE-2003-1048
JSON object : View
Products Affected
microsoft
- windows_98
- windows_xp
- windows_me
- windows_98se
- internet_explorer
- windows_nt
- windows_server_2003
- outlook
CWE
CWE-415
Double Free