CENTER.HU groups
CENTER.HU address

User:

Guest

www.center.hu / Archive / Security news / july, 2005 / New vulnerability in Internet Explorer 

New vulnerability in Internet Explorer

New vulnerability in Internet Explorer

Madrid, July 1, 2005 - SEC Consult has reported a vulnerability in Microsoft Internet Explorer (rated as ˝Higly critical˝ by Secunia), which potentially can be exploited by malicious people to compromise a user´s system.

The vulnerability is caused due to the ˝javaprxy.dll˝ COM object being instantiated incorrectly in Internet Explorer via the object tag. This can be exploited via a malicious web site to cause a memory corruption. Successful exploitation may allow execution of arbitrary code.

The vulnerability has been reported in versions 5.01, 5.5, and 6.0, and Microsoft recommends setting Internet and Local intranet security zone settings to ˝High˝.

More information and a proof of concept are available at http://www.sec-consult.com/184.html.  Microsoft information, available at http://www.microsoft.com/technet/security/advisory/903144.mspx.

Oxygen3 24h-365d,
by Panda Software

Back




Copyright © CENTER.HU Ltd, 2000-2010. All rights reserved

sitemap | privacy policy |

copyrights | new pages |

terms of purchase | contact us


PARTNERS: Computerworld.hu | GameStar.hu | PCWorld.hu | SG.hu | PC Guru | Hitel