Microsoft Internet Explorer 7 Denial of Service Vulnerability
BID:18736
CVE-2006-3545 |Info
Microsoft Internet Explorer 7 Denial of Service Vulnerability
| Bugtraq ID: | 18736 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 29 2006 12:00AM |
| Updated: | Jun 30 2006 04:59PM |
| Credit: | Mr.Niega is credited with the discovery of this issue. |
| Vulnerable: |
Microsoft Internet Explorer 7.0 beta3 Microsoft Internet Explorer 7.0 beta2 Microsoft Internet Explorer 7.0 beta1 |
| Not Vulnerable: | |
Discussion
Microsoft Internet Explorer 7 Denial of Service Vulnerability
Microsoft Internet Explorer 7 is prone to a denial-of-service vulnerability when parsing certain HTML content.
Successfully exploiting this issue allows attackers to consume excessive CPU resources in affected browsers, denying service to legitimate users.
Microsoft Internet Explorer 7 is prone to a denial-of-service vulnerability when parsing certain HTML content.
Successfully exploiting this issue allows attackers to consume excessive CPU resources in affected browsers, denying service to legitimate users.
Exploit / POC
Microsoft Internet Explorer 7 Denial of Service Vulnerability
The following HTML code is sufficient to trigger this issue:
The following HTML code is sufficient to trigger this issue:
Solution / Fix
Microsoft Internet Explorer 7 Denial of Service Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]:[email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]:[email protected].
References
Microsoft Internet Explorer 7 Denial of Service Vulnerability
References:
References: