PT-2007-3550 · Microsoft+1 · Internet Explorer+1
Publicado
2007-04-24
·
Atualizado
2018-10-16
·
CVE-2007-2210
CVSS v2.0
7.8
Alta
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Netsprint Ask IE Toolbar version 1.1
Description
The issue is related to improper memory handling, possibly a buffer overflow, in a certain ActiveX control in askPopStp.dll. This can cause a denial of service, leading to an Internet Explorer crash, when a long value is set for the
AddAllowed property.Recommendations
For Netsprint Ask IE Toolbar version 1.1, consider disabling the affected ActiveX control in askPopStp.dll as a temporary workaround to prevent potential crashes of Internet Explorer.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Internet Explorer
Netsprint Ask Ie Toolbar