|
|

CVE Reference: CVE-2007-0217 |
|
| NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE. | |
|
Original Page at CVE MITRE: CVE-2007-0217 |
|
|
Description: The wininet.dll FTP client code in Microsoft Internet Explorer 5.01 and 6 might allow remote attackers to execute arbitrary code via an FTP server response of a specific length that causes a terminating null byte to be written outside of a buffer, which causes heap corruption. |
|
|
CVE Status: Candidate |
|
|
References: ST 1017642 SAID Secunia Advisory: SA24156 OVAL http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1141 OSVDB 31892 MS http://www.microsoft.com/technet/security/Bulletin/MS07-016.mspx IDEFENSE http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=473 CERT-VN 613564 CERT http://www.us-cert.gov/cas/techalerts/TA07-044A.html BUGTRAQ http://www.securityfocus.com/archive/1/archive/1/462303/100/0/threaded BID 22489 |
|
| Return to the previous page. |
Not a customer already?Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance. |