Microsoft Internet Explorer 9 'Iedvtool.dll' Malformed HTML Denial of Service Vulnerability
BID:49165
Info
Microsoft Internet Explorer 9 'Iedvtool.dll' Malformed HTML Denial of Service Vulnerability
| Bugtraq ID: | 49165 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 16 2011 12:00AM |
| Updated: | Aug 16 2011 12:00AM |
| Credit: | Ivan Sanchez and Hernan Hegykozi |
| Vulnerable: |
Microsoft Internet Explorer 9 |
| Not Vulnerable: | |
Discussion
Microsoft Internet Explorer 9 'Iedvtool.dll' Malformed HTML Denial of Service Vulnerability
Microsoft Internet Explorer is prone to a remote denial-of-service vulnerability.
Successful exploits can allow attackers to crash the affected browser, resulting in denial-of-service conditions. Given the nature of this issue, attackers may also be able to corrupt process memory and execute arbitrary code, but this has not been confirmed.
The issue affects Internet Explorer 9; other versions may also be vulnerable.
Microsoft Internet Explorer is prone to a remote denial-of-service vulnerability.
Successful exploits can allow attackers to crash the affected browser, resulting in denial-of-service conditions. Given the nature of this issue, attackers may also be able to corrupt process memory and execute arbitrary code, but this has not been confirmed.
The issue affects Internet Explorer 9; other versions may also be vulnerable.
Exploit / POC
Microsoft Internet Explorer 9 'Iedvtool.dll' Malformed HTML Denial of Service Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Microsoft Internet Explorer 9 'Iedvtool.dll' Malformed HTML Denial of Service Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Microsoft Internet Explorer 9 'Iedvtool.dll' Malformed HTML Denial of Service Vulnerability
References:
References: