PT-2005-4957 · Microsoft · Server 2003+3
Published
2005-12-15
·
Updated
2008-09-05
·
CVE-2005-4269
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Microsoft Windows XP
Microsoft Server 2003
Internet Explorer 6.0 SP1
Description
The issue allows attackers to cause a denial of service, resulting in an access violation. This occurs when mshtml.dll processes button-focus events simultaneously with a document reload. An example of this is seen in Microsoft Office InfoPath 2003, where repeatedly clicking the "Delete" button in a repeating section of a form can trigger the issue.
Recommendations
For Microsoft Windows XP, apply the necessary patch to resolve the issue.
For Microsoft Server 2003, apply the necessary patch to resolve the issue.
For Internet Explorer 6.0 SP1, apply the necessary patch to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Internet Explorer 6.0 Sp1
Office Infopath 2003
Server 2003
Windows Xp