Several vulnerabilities were reported in Microsoft Internet Explorer, which may be exploited by attackers to compromise a vulnerable system.
- An URL Decoding Zone Spoofing vulnerability exists because of the way that Internet Explorer handles certain encoded URLs containing characters other than alphanumeric, which may be exploited to execute arbitrary code.
- An Insufficient validation error resides in the Drag and Drop technology when handling some dynamic HTML (DHTML) events, which may be exploited to download a malicious file to the user's system via a specially crafted "Content-Disposition" HTTP header with a dot appended in the filename.
- A heap memory corruption vulnerability exists in the javascript function "createControlRange()", which could potentially allow remote code execution.
- A Channel Definition Format (CDF) Cross Domain vulnerability exists when handling certain URLs, which could allow information disclosure or remote code execution.
Credits
Vulnerability reported by Michael Krax, Andreas Sandblad and Jouko Pynnönen
ChangeLog
2005-02-08 : Initial release
Vulnerability Management
Subscribe to FrSIRT VNS and receive real-time e-mail and SMS alerts when new vulnerabilities, exploits, or patches relevant to your systems and network configurations are available.
Feedback
If you have additional information or corrections for this security advisory please submit them via our contact form or by email to updates@frsirt.com.