Microsoft Internet Explorer HTTP 1.1 and Compression Long URI Buffer Overflow Variant Vulnerability
BID:19987
CVE-2006-3873 |Info
Microsoft Internet Explorer HTTP 1.1 and Compression Long URI Buffer Overflow Variant Vulnerability
| Bugtraq ID: | 19987 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2006-3873 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 12 2006 12:00AM |
| Updated: | Mar 29 2007 12:43AM |
| Credit: | Derek Soeder of eEye Digital Security is credited with the discovery of this vulnerability. |
| Vulnerable: |
Microsoft Internet Explorer 5.0.1 SP4 Microsoft Internet Explorer 6.0 SP1 Microsoft Internet Explorer 6.0 |
| Not Vulnerable: | |
Discussion
Microsoft Internet Explorer HTTP 1.1 and Compression Long URI Buffer Overflow Variant Vulnerability
Microsoft Internet Explorer is prone to a remote buffer-overflow vulnerability. A successful exploit may result in arbitrary code-execution in the context of the user running the browser.
This issue was introduced with the rereleased patches of Microsoft advisory MS06-042.
This issue is nearly identical to that discussed in BID 19667 (Microsoft Internet Explorer HTTP 1.1 and Compression Long URI Buffer Overflow Vulnerability), but is a separate vulnerability.
Microsoft Internet Explorer is prone to a remote buffer-overflow vulnerability. A successful exploit may result in arbitrary code-execution in the context of the user running the browser.
This issue was introduced with the rereleased patches of Microsoft advisory MS06-042.
This issue is nearly identical to that discussed in BID 19667 (Microsoft Internet Explorer HTTP 1.1 and Compression Long URI Buffer Overflow Vulnerability), but is a separate vulnerability.
Exploit / POC
Microsoft Internet Explorer HTTP 1.1 and Compression Long URI Buffer Overflow Variant Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Microsoft Internet Explorer HTTP 1.1 and Compression Long URI Buffer Overflow Variant Vulnerability
Solution:
Microsoft Security Bulletin MS06-042 has been reissued to address this issue. Please see the referenced advisory for more information.
Microsoft Security Bulletin MS06-042 has been updated to address a flaw in Mshtml.dll that was introduced in the previous fixes. Please see the referenced advisory for more information.
Microsoft Internet Explorer 6.0 SP1
Microsoft Internet Explorer 5.0.1 SP4
Solution:
Microsoft Security Bulletin MS06-042 has been reissued to address this issue. Please see the referenced advisory for more information.
Microsoft Security Bulletin MS06-042 has been updated to address a flaw in Mshtml.dll that was introduced in the previous fixes. Please see the referenced advisory for more information.
Microsoft Internet Explorer 6.0 SP1
-
Microsoft Cumulative Update for Internet Explorer 6 SP1 (KB918899)
http://www.microsoft.com/downloads/details.aspx?FamilyId=B6E09C27-CE26 -494F-AD2A-6C9A8C72453F&displaylang=en -
Microsoft Cumulative Update for Internet Explorer for Windows Server 2003 (KB918899)
Internet Explorer 6 for Microsoft Windows Server 2003 and Microsoft Windows Server 2003 Service Pack 1
http://www.microsoft.com/downloads/details.aspx?FamilyId=D30209FA-9994 -4F1B-B6D6-4BACC328135A&displaylang=en
Microsoft Internet Explorer 5.0.1 SP4
-
Microsoft Cumulative Update for Internet Explorer 5.01 Service Pack 4 (KB918899)
http://www.microsoft.com/downloads/details.aspx?FamilyId=44A8C303-B46C -4CCE-8442-D8A1CF1561DC&displaylang=en
References
Microsoft Internet Explorer HTTP 1.1 and Compression Long URI Buffer Overflow Variant Vulnerability
References:
References:
- Internet Explorer Compressed Content URL Heap Overflow Vulnerability #2 (eEye Digital Security)
- KB926840: Internet Explorer 6 may close unexpectedly, and an access violation ma (Microsoft)
- MS06-042 - Cumulative Security Update for Internet Explorer (918899) (Microsoft)
- [EEYEB-20080824] Internet Explorer Compressed Content URL Heap Overflow Vulnerab (eEye Digital Security)