PT-2006-4724 · Microsoft · Internet Explorer 6 Sp1+1
Dejan Kovacevic
·
Published
2006-08-22
·
Updated
2018-10-17
·
CVE-2006-3869
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Internet Explorer 6 SP1 versions prior to MS06-042 patch
Description
A remote code execution issue exists in the way Internet Explorer handles long URLs on websites that use HTTP 1.1 compression. This could allow an attacker to cause a denial of service or execute arbitrary code via a specially crafted Web page. If successfully exploited, an attacker could take complete control of an affected system.
Recommendations
For Internet Explorer 6 SP1, apply the MS06-042 patch or later to resolve the issue. As a temporary workaround, consider avoiding websites that use HTTP 1.1 compression until the patch is applied.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Internet Explorer
Internet Explorer 6 Sp1