PT-1997-1176 · Microsoft · Windows Explorer+2

Published

1997-11-01

·

Updated

2022-08-17

·

CVE-1999-0967

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Internet Explorer (affected versions not specified) Outlook Express (affected versions not specified) Windows Explorer (affected versions not specified)
Description A buffer overflow issue exists in the HTML library used by the affected software via the res: local resource protocol.
Recommendations For Internet Explorer, update to a version that includes a fix for this issue. For Outlook Express, update to a version that includes a fix for this issue. For Windows Explorer, update to a version that includes a fix for this issue. As a temporary workaround, consider restricting access to the res: protocol to minimize the risk of exploitation.

Fix

Related Identifiers

CVE-1999-0967

Affected Products

Internet Explorer
Outlook Express
Windows Explorer