Microsoft Internet Explorer IsComponentInstalled Buffer Overflow Vulnerability
BID:16870
Info
Microsoft Internet Explorer IsComponentInstalled Buffer Overflow Vulnerability
| Bugtraq ID: | 16870 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2006-1016 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 28 2006 12:00AM |
| Updated: | Nov 15 2007 12:39AM |
| Credit: | Reported by H D Moore <[email protected]>. |
| Vulnerable: |
Microsoft Internet Explorer 6.0 |
| Not Vulnerable: | |
Discussion
Microsoft Internet Explorer IsComponentInstalled Buffer Overflow Vulnerability
Microsoft Internet Explorer is prone to a remote buffer-overflow vulnerability in the 'IsComponentInstalled()' method. A successful exploit results in arbitrary code execution in the context of the user running the browser.
This issue was reportedly addressed in Windows 2000 SP4 and Windows XP SP1, but this has not been confirmed.
Internet Explorer 6 is vulnerable to this issue; earlier versions may also be affected.
Microsoft Internet Explorer is prone to a remote buffer-overflow vulnerability in the 'IsComponentInstalled()' method. A successful exploit results in arbitrary code execution in the context of the user running the browser.
This issue was reportedly addressed in Windows 2000 SP4 and Windows XP SP1, but this has not been confirmed.
Internet Explorer 6 is vulnerable to this issue; earlier versions may also be affected.
Exploit / POC
Microsoft Internet Explorer IsComponentInstalled Buffer Overflow Vulnerability
UPDATE: Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
The following exploit is available for the Metasploit framework:
UPDATE: Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
The following exploit is available for the Metasploit framework:
Solution / Fix
Microsoft Internet Explorer IsComponentInstalled Buffer Overflow Vulnerability
Solution:
This issue was reportedly fixed in Service Pack 4 for Windows 2000 and Service Pack 2 for Windows XP, but this has not been confirmed. Please contact the vendor for details.
Solution:
This issue was reportedly fixed in Service Pack 4 for Windows 2000 and Service Pack 2 for Windows XP, but this has not been confirmed. Please contact the vendor for details.
References
Microsoft Internet Explorer IsComponentInstalled Buffer Overflow Vulnerability
References:
References: