Microsoft Internet Explorer 5.5 and 6.0 allocates memory based on the memory size written in the BMP file instead of the actual BMP file size, which allows remote attackers to cause a denial of service (memory consumption) via a small BMP file with has a large memory size.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2004-1915 | Microsoft Internet Explorer 5.5 and 6.0 allocates memory based on the memory size written in the BMP file instead of the actual BMP file size, which allows remote attackers to cause a denial of service (memory consumption) via a small BMP file with has a large memory size. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| http://marc.info/?l=bugtraq&m=108183130827872&w=2 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-08T01:07:49.032Z
Reserved: 2005-05-04T00:00:00
Link: CVE-2004-1922
No data.
Status : Deferred
Published: 2004-04-11T04:00:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2004-1922
No data.
OpenCVE Enrichment
No data.
EUVD