Heap-based buffer overflow in the DirectAnimation Path Control (DirectAnimation.PathControl) COM object (daxctle.ocx) for Internet Explorer 6.0 SP1, on Chinese and possibly other Windows distributions, allows remote attackers to execute arbitrary code via unknown manipulations in arguments to the KeyFrame method, possibly related to an integer overflow, as demonstrated by daxctle2, and a different vulnerability than CVE-2006-4446.
References
Configurations
History
21 Nov 2024, 00:16
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/21910 - Vendor Advisory | |
References | () http://securityreason.com/securityalert/1577 - | |
References | () http://securitytracker.com/id?1016854 - | |
References | () http://www.kb.cert.org/vuls/id/377369 - US Government Resource | |
References | () http://www.microsoft.com/technet/security/advisory/925444.mspx - | |
References | () http://www.osvdb.org/28842 - | |
References | () http://www.securityfocus.com/archive/1/445898/100/0/threaded - | |
References | () http://www.securityfocus.com/archive/1/446065/100/0/threaded - | |
References | () http://www.securityfocus.com/archive/1/446084/100/0/threaded - | |
References | () http://www.securityfocus.com/archive/1/446085/100/0/threaded - | |
References | () http://www.securityfocus.com/archive/1/446246/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/20047 - | |
References | () http://www.us-cert.gov/cas/techalerts/TA06-318A.html - US Government Resource | |
References | () http://www.vupen.com/english/advisories/2006/3593 - Vendor Advisory | |
References | () http://www.xsec.org/index.php?module=releases&act=view&type=2&id=20 - | |
References | () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-067 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/28942 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1103 - |
Information
Published : 2006-09-14 00:07
Updated : 2024-11-21 00:16
NVD link : CVE-2006-4777
Mitre link : CVE-2006-4777
CVE.ORG link : CVE-2006-4777
JSON object : View
Products Affected
microsoft
- ie
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer