CVE-2006-4193

Microsoft Internet Explorer 6.0 SP1 and possibly other versions allows remote attackers to cause a denial of service and possibly execute arbitrary code by instantiating COM objects as ActiveX controls, including (1) imskdic.dll (Microsoft IME), (2) chtskdic.dll (Microsoft IME), and (3) msoe.dll (Outlook), which leads to memory corruption. NOTE: it is not certain whether the issue is in Internet Explorer or the individual DLL files.
References
Link Resource
http://securityreason.com/securityalert/1402
http://www.osvdb.org/29345
http://www.osvdb.org/29346
http://www.osvdb.org/29347
http://www.securityfocus.com/archive/1/443290/100/0/threaded
http://www.securityfocus.com/archive/1/443295/100/0/threaded
http://www.securityfocus.com/archive/1/443299/100/0/threaded
http://www.securityfocus.com/bid/19521 Exploit
http://www.securityfocus.com/bid/19529 Exploit
http://www.securityfocus.com/bid/19530 Exploit
http://www.xsec.org/index.php?module=releases&act=view&type=1&id=10 Exploit Vendor Advisory
http://www.xsec.org/index.php?module=releases&act=view&type=1&id=8 Exploit Vendor Advisory
http://www.xsec.org/index.php?module=releases&act=view&type=1&id=9 Exploit Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/28436
https://exchange.xforce.ibmcloud.com/vulnerabilities/28438
https://exchange.xforce.ibmcloud.com/vulnerabilities/28439
http://securityreason.com/securityalert/1402
http://www.osvdb.org/29345
http://www.osvdb.org/29346
http://www.osvdb.org/29347
http://www.securityfocus.com/archive/1/443290/100/0/threaded
http://www.securityfocus.com/archive/1/443295/100/0/threaded
http://www.securityfocus.com/archive/1/443299/100/0/threaded
http://www.securityfocus.com/bid/19521 Exploit
http://www.securityfocus.com/bid/19529 Exploit
http://www.securityfocus.com/bid/19530 Exploit
http://www.xsec.org/index.php?module=releases&act=view&type=1&id=10 Exploit Vendor Advisory
http://www.xsec.org/index.php?module=releases&act=view&type=1&id=8 Exploit Vendor Advisory
http://www.xsec.org/index.php?module=releases&act=view&type=1&id=9 Exploit Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/28436
https://exchange.xforce.ibmcloud.com/vulnerabilities/28438
https://exchange.xforce.ibmcloud.com/vulnerabilities/28439
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:ie:6.0:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:ie:6.0:sp2:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:6.0:*:*:*:*:*:*:*

History

21 Nov 2024, 00:15

Type Values Removed Values Added
References () http://securityreason.com/securityalert/1402 - () http://securityreason.com/securityalert/1402 -
References () http://www.osvdb.org/29345 - () http://www.osvdb.org/29345 -
References () http://www.osvdb.org/29346 - () http://www.osvdb.org/29346 -
References () http://www.osvdb.org/29347 - () http://www.osvdb.org/29347 -
References () http://www.securityfocus.com/archive/1/443290/100/0/threaded - () http://www.securityfocus.com/archive/1/443290/100/0/threaded -
References () http://www.securityfocus.com/archive/1/443295/100/0/threaded - () http://www.securityfocus.com/archive/1/443295/100/0/threaded -
References () http://www.securityfocus.com/archive/1/443299/100/0/threaded - () http://www.securityfocus.com/archive/1/443299/100/0/threaded -
References () http://www.securityfocus.com/bid/19521 - Exploit () http://www.securityfocus.com/bid/19521 - Exploit
References () http://www.securityfocus.com/bid/19529 - Exploit () http://www.securityfocus.com/bid/19529 - Exploit
References () http://www.securityfocus.com/bid/19530 - Exploit () http://www.securityfocus.com/bid/19530 - Exploit
References () http://www.xsec.org/index.php?module=releases&act=view&type=1&id=10 - Exploit, Vendor Advisory () http://www.xsec.org/index.php?module=releases&act=view&type=1&id=10 - Exploit, Vendor Advisory
References () http://www.xsec.org/index.php?module=releases&act=view&type=1&id=8 - Exploit, Vendor Advisory () http://www.xsec.org/index.php?module=releases&act=view&type=1&id=8 - Exploit, Vendor Advisory
References () http://www.xsec.org/index.php?module=releases&act=view&type=1&id=9 - Exploit, Vendor Advisory () http://www.xsec.org/index.php?module=releases&act=view&type=1&id=9 - Exploit, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/28436 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/28436 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/28438 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/28438 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/28439 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/28439 -

Information

Published : 2006-08-17 01:04

Updated : 2024-11-21 00:15


NVD link : CVE-2006-4193

Mitre link : CVE-2006-4193

CVE.ORG link : CVE-2006-4193


JSON object : View

Products Affected

microsoft

  • internet_explorer
  • ie