PT-2006-4724 · Microsoft · Internet Explorer 6 Sp1+1

Dejan Kovacevic

·

Published

2006-08-22

·

Updated

2018-10-17

·

CVE-2006-3869

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Internet Explorer 6 SP1 versions prior to MS06-042 patch
Description A remote code execution issue exists in the way Internet Explorer handles long URLs on websites that use HTTP 1.1 compression. This could allow an attacker to cause a denial of service or execute arbitrary code via a specially crafted Web page. If successfully exploited, an attacker could take complete control of an affected system.
Recommendations For Internet Explorer 6 SP1, apply the MS06-042 patch or later to resolve the issue. As a temporary workaround, consider avoiding websites that use HTTP 1.1 compression until the patch is applied.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-3869

Affected Products

Internet Explorer
Internet Explorer 6 Sp1