HIGH
Microsoft Internet Explorer 6 and 7 Beta 2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a certain createTextRange call on a checkbox object, which results in a dereference of an invalid table pointer
Published Mar 23, 2006
9.3
HIGHCVSS 2.0
EPSS 68.34%
Description
Microsoft Internet Explorer 6 and 7 Beta 2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a certain createTextRange call on a checkbox object, which results in a dereference of an invalid table pointer.
Affected products
Remediation
No remediation recorded yet.
Weaknesses (1)
References (29)
- http://archives.neohapsis.com/archives/fulldisclosure/2006-03/1427.html mailing-listx_refsource_FULLDISC
- http://archives.neohapsis.com/archives/fulldisclosure/2006-03/1430.html mailing-listx_refsource_FULLDISC
- http://archives.neohapsis.com/archives/fulldisclosure/2006-03/1434.html mailing-listx_refsource_FULLDISC
- http://archives.neohapsis.com/archives/fulldisclosure/2006-03/1662.html mailing-listx_refsource_FULLDISC
- http://secunia.com/advisories/18680 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/secunia_research/2006-7/advisory/ x_refsource_MISC
- http://securitytracker.com/id?1015812 vdb-entryx_refsource_SECTRACK
- http://www.ciac.org/ciac/bulletins/q-154.shtml third-party-advisorygovernment-resourcex_refsource_CIAC
- http://www.computerterrorism.com/research/ct22-03-2006 x_refsource_MISCVendor Advisory
- http://www.kb.cert.org/vuls/id/876678 third-party-advisoryx_refsource_CERT-VNUS Government Resource
- http://www.microsoft.com/technet/security/advisory/917077.mspx x_refsource_CONFIRM
- http://www.osvdb.org/24050 vdb-entryx_refsource_OSVDB
- http://www.securityfocus.com/archive/1/428441 mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/archive/1/428583/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/archive/1/428600/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/archive/1/429088/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/archive/1/429124/30/6120/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/17196 vdb-entryx_refsource_BIDExploit
- http://www.us-cert.gov/cas/techalerts/TA06-101A.html third-party-advisoryx_refsource_CERTUS Government Resource
- http://www.vupen.com/english/advisories/2006/1050 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2006/1318 vdb-entryx_refsource_VUPEN
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-013 vendor-advisoryx_refsource_MS
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2006-1363 Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25379 vdb-entryx_refsource_XF
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1178 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1657 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1678 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1702 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A985 vdb-entrysignaturex_refsource_OVAL
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner microsoft
Published Mar 23, 2006
Updated Aug 7, 2024
Reserved Mar 22, 2006
Link CVE-2006-1359
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2006-1363 Assigner microsoft
Published Mar 23, 2006
Updated Aug 7, 2024
Exploited since n/a
Link EUVD-2006-1363