CVE Database
/

CVE-2006-3873

Back to search

CVE-2006-3873

Published: Sep 12, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

Heap-based buffer overflow in URLMON.DLL in Microsoft Internet Explorer 6 SP1 on Windows 2000 and XP SP1, with versions the MS06-042 patch before 20060912, allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a long URL in a GZIP-encoded website that was the target of an HTTP redirect, due to an incomplete fix for CVE-2006-3869.

VendorProductVersions

n/a

n/a

affected
n/a

References

ie-url-compression-bo(28893)
vdb-entry
x_refsource_XF
MS06-042
vendor-advisory
x_refsource_MS
1555
third-party-advisory
x_refsource_SREASON
1016839
vdb-entry
x_refsource_SECTRACK
19987
vdb-entry
x_refsource_BID
30834
vdb-entry
x_refsource_OSVDB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now