Oval Definition:
oval:org.mitre.oval:def:926
Revision Date
:
2014-02-24
Version
:
44
Title
:
IE URLMON Buffer Overflow
Description
:
Buffer overflow in URLMON.DLL in Microsoft Internet Explorer 5.01, 5.5 and 6.0 allows remote attackers to execute arbitrary code via an HTTP response containing long values in (1) Content-type and (2) Content-encoding fields.
Family
:
windows
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2003-0113
Platform(s)
:
Microsoft Windows 2000
Microsoft Windows 98
Microsoft Windows ME
Microsoft Windows NT
Microsoft Windows Server 2003
Microsoft Windows XP
Product(s)
:
Microsoft Internet Explorer
Definition Synopsis
Internet Explorer 5.5 Service Pack 2 is installed
AND
the version of mshtml.dll is less than 5.50.4926.2500
AND
File %windir%\system32\urlmon.dll version is less than 5.50.4927.2100
AND
NOT
the patch q813489 is installed (Installed Components key)
AND
NOT
the patch q818529 is installed (Installed Components key)
AND
NOT
the patch q822925 is installed (Installed Components key)
AND
NOT
the patch q828750 is installed (Installed Components key)
AND
NOT
the patch q824145 is installed (Installed Components key)
AND
NOT
the patch q832894 is installed (Installed Components key)
BACK