Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q69v-fxm4-rmj3

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Integer underflow in the CDownloadSink class code in the Vector Markup Language (VML) component (VGX.DLL), as used in Internet Explorer 5.01, 6, and 7 allows remote attackers to execute arbitrary code via compressed content with an invalid buffer size, which triggers a heap-based buffer overflow.

Integer underflow in the CDownloadSink class code in the Vector Markup Language (VML) component (VGX.DLL), as used in Internet Explorer 5.01, 6, and 7 allows remote attackers to execute arbitrary code via compressed content with an invalid buffer size, which triggers a heap-based buffer overflow.

EPSS

Процентиль: 99%
0.7827
Высокий

Связанные уязвимости

nvd
больше 18 лет назад

Integer underflow in the CDownloadSink class code in the Vector Markup Language (VML) component (VGX.DLL), as used in Internet Explorer 5.01, 6, and 7 allows remote attackers to execute arbitrary code via compressed content with an invalid buffer size, which triggers a heap-based buffer overflow.

EPSS

Процентиль: 99%
0.7827
Высокий