Microsoft Internet Explorer 6.0 SP1 allows remote attackers to cause a denial of service (crash) via a long Color attribute in multiple DirectX Media Image DirectX Transforms ActiveX COM Objects from (a) dxtmsft.dll and (b) dxtmsft3.dll, including (1) DXImageTransform.Microsoft.MaskFilter.1, (2) DXImageTransform.Microsoft.Chroma.1, and (3) DX3DTransform.Microsoft.Shapes.1.
References
Configurations
History
21 Nov 2024, 00:15
Type | Values Removed | Values Added |
---|---|---|
References | () http://securityreason.com/securityalert/1439 - | |
References | () http://www.osvdb.org/29524 - | |
References | () http://www.osvdb.org/29525 - | |
References | () http://www.securityfocus.com/archive/1/443907/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/19640 - Exploit | |
References | () http://xsec.org/index.php?module=releases&act=view&type=1&id=17 - Exploit, Vendor Advisory | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/28516 - | |
References | () https://www.exploit-db.com/exploits/4251 - |
Information
Published : 2006-08-23 01:04
Updated : 2024-11-21 00:15
NVD link : CVE-2006-4301
Mitre link : CVE-2006-4301
CVE.ORG link : CVE-2006-4301
JSON object : View
Products Affected
microsoft
- ie
CWE
CWE-20
Improper Input Validation