Posted on Tuesday, April 08, 2008 @ 19:27:38 CDT in Security
by Raven
SECUNIA ADVISORY ID: SA27707
VERIFY ADVISORY: http://secunia.com/advisories/27707/
CRITICAL: Highly critical
IMPACT: System access
SOFTWARE:
Microsoft Internet Explorer 6.x http://secunia.com/product/11/
Microsoft Internet Explorer 7.x http://secunia.com/product/12366/
Microsoft Internet Explorer 5.01 http://secunia.com/product/9/
DESCRIPTION: Secunia Research has discovered a vulnerability in Internet Explorer, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to an error when processing data streams and can be exploited to trigger a use-after-free condition by returning a specially crafted data stream of e.g. an unexpected MIME-type for which no handler is registered. Successful exploitation allows execution of arbitrary code when a user visits a malicious website. Read More...