[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

MSXML Memory Corruption Vulnerability

ID: oval:org.mitre.oval:def:5793Date: (C)2008-11-19   (M)2022-10-10
Class: VULNERABILITYFamily: windows




Race condition in the msxml3 module in Microsoft XML Core Services 3.0, as used in Internet Explorer 6 and other applications, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via many nested tags in an XML document in an IFRAME, when synchronous document rendering is frequently disrupted with asynchronous events, as demonstrated using a JavaScript timer, which can trigger NULL pointer dereferences or memory corruption, aka "MSXML Memory Corruption Vulnerability."

Platform:
Microsoft Windows 2000
Microsoft Windows XP
Microsoft Windows Server 2003
Microsoft Windows Vista
Microsoft Windows Server 2008
Reference:
CVE-2007-0099
CVE    1
CVE-2007-0099
CPE    1
cpe:/a:microsoft:xml_core_services:3.0

© SecPod Technologies