CVE Number | Vulnerability | Product | Severity | Date |
---|---|---|---|---|
MS07-045 | Cumulative Security Update for Internet Explorer (937143) | Microsoft Internet | Critical | 16-08-2007 |
Technical Information
Brief overview of the risk:
This Security Update addresses the following vulnerabilities: Cascading Style Sheets (CSS) Memory Corruption Vulnerability ActiveX Object Vulnerability ActiveX Object Memory Corruption Vulnerability
Detailed Information on the risk:
Two of the vulnerabilities are addressed by setting the kill bit for ActiveX controls. The third vulnerability is addressed by modifying the way that Internet Explorer handles CSS files containing particular strings.Further information on this exploit is available at : MS07-045
Affected Software
Microsoft Internet Explorer 5.01 Service Pack 4Microsoft Internet Explorer 6
Microsoft Internet Explorer 7