|
|||
Rule General Information |
---|
Release Date: | 2019-12-02 | |
Rule Name: | Microsoft Internet Explorer Table Column Memory Corruption Vulnerability (CVE-2007-0944) | |
Severity: | ||
CVE ID: | ||
Rule Protection Details |
---|
Description: | Unspecified vulnerability in the CTableCol::OnPropertyChange method in Microsoft Internet Explorer 5.01 SP4 on Windows 2000 SP4; 6 SP1 on Windows 2000 SP4; and 6 on Windows XP SP2, or Windows Server 2003 SP1 or SP2 allows remote attackers to execute arbitrary code by calling deleteCell on a named table row in a named table column, then accessing the column, which causes Internet Explorer to access previously deleted objects, aka the "Uninitialized Memory Corruption Vulnerability." | |
Impact: | An attacker can execute arbitrary code in the context of the vulnerable system. Failed exploit may cause denial-of-service attack. | |
Affected OS: | Windows, Others | |
Reference: | SecurityFocusBID:23771 MicrosoftSecurityBulletin:ms07-027 http://www.securityfocus.com/archive/1/467989/100/0/threaded http://www.securityfocus.com/archive/1/468871/100/200/threaded |
|
Solutions |
---|
The vendors have released upgrade patches to fix vulnerabilities, please visit: 临时解决方法: |