PT-2002-2298 · Microsoft+1 · Internet Explorer+2
Published
2002-08-15
·
Updated
2021-07-23
·
CVE-2002-1444
CVSS v2.0
2.6
Low
| Vector | AV:N/AC:H/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Google toolbar version 1.1.60
Internet Explorer versions 5.5 through 6.0
Description
The issue allows remote attackers to cause a denial of service, resulting in a crash with an exception in oleaut32.dll, via malicious HTML. This could be related to small width and height parameters or an incorrect call to the
Google.Search() function.Recommendations
For Google toolbar version 1.1.60, consider avoiding the use of small width and height parameters in HTML until a fix is available.
For Internet Explorer versions 5.5 through 6.0, restrict the use of the Google toolbar until the issue is resolved.
As a temporary workaround, consider disabling the
Google.Search() function in the Google toolbar until a patch is available.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Google Toolbar
Internet Explorer
Oleaut32.Dll