PT-2006-4789 · Microsoft · Ndfxarteffects+2

Published

2006-07-31

·

Updated

2017-07-20

·

CVE-2006-3943

CVSS v2.0

2.6

Low

VectorAV:N/AC:H/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Microsoft Internet Explorer 6 on Windows XP SP2
Description The issue is related to a stack-based buffer overflow in the NDFXArtEffects component. This can be triggered by remote attackers sending long values for certain properties, specifically RGBExtraColor, RGBForeColor, and RGBBackColor, leading to a denial of service where the application crashes.
Recommendations For Microsoft Internet Explorer 6 on Windows XP SP2, consider restricting access to the NDFXArtEffects component until a fix is available. As a temporary workaround, avoid using long values for the RGBExtraColor, RGBForeColor, and RGBBackColor properties to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-3943

Affected Products

Internet Explorer 6
Ndfxarteffects
Windows Xp