CVE Database
/

CVE-2006-1303

Back to search

CVE-2006-1303

Published: Jun 13, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple unspecified vulnerabilities in Microsoft Internet Explorer 5.01 SP4 and 6 SP1 and earlier allow remote attackers to execute arbitrary code by instantiating certain COM objects from Wmm2fxa.dll as ActiveX controls including (1) DXImageTransform.Microsoft.MMSpecialEffect1Input, (2) DXImageTransform.Microsoft.MMSpecialEffect1Input.1, (3) DXImageTransform.Microsoft.MMSpecialEffect2Inputs, (4) DXImageTransform.Microsoft.MMSpecialEffect2Inputs.1, (5) DXImageTransform.Microsoft.MMSpecialEffectInplace1Input, and (6) DXImageTransform.Microsoft.MMSpecialEffectInplace1Input.1, which causes memory corruption during garbage collection.

VendorProductVersions

n/a

n/a

affected
n/a

References

18328
vdb-entry
x_refsource_BID
oval:org.mitre.oval:def:1135
vdb-entry
signature
x_refsource_OVAL
VU#959049
third-party-advisory
x_refsource_CERT-VN
20595
third-party-advisory
x_refsource_SECUNIA
ADV-2006-2319
vdb-entry
x_refsource_VUPEN
1016291
vdb-entry
x_refsource_SECTRACK
ie-wmm2fxadll-execute-code(26774)
vdb-entry
x_refsource_XF
oval:org.mitre.oval:def:1767
vdb-entry
signature
x_refsource_OVAL
oval:org.mitre.oval:def:2017
vdb-entry
signature
x_refsource_OVAL
oval:org.mitre.oval:def:1973
vdb-entry
signature
x_refsource_OVAL
oval:org.mitre.oval:def:1928
vdb-entry
signature
x_refsource_OVAL
oval:org.mitre.oval:def:1830
vdb-entry
signature
x_refsource_OVAL
MS06-021
vendor-advisory
x_refsource_MS
26442
vdb-entry
x_refsource_OSVDB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now