Open Vulnerability and Assessment Language (OVAL)
Contact Us Downloads News July 2, 2009 Search
link to OVAL home page

View Definition

Definition Id: oval:org.mitre.oval:def:1558 Date: 2007-03-06
Title: Win2K,SP4 COM Object Instantiation Memory Corruption Vulnerability
Description: Microsoft Internet Explorer 5.01, 5.5, and 6 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a web page with embedded CLSIDs that reference certain COM objects that are not intended for use within Internet Explorer, aka a variant of the "COM Object Instantiation Memory Corruption Vulnerability," a different vulnerability than CVE-2005-2127.
Version: 3 Class: vulnerability
Status: ACCEPTED Reference(s): CVE-2005-2831
Family: windows
Platform(s): Microsoft Windows 2000 Product(s): Microsoft Internet Explorer
Definition Synopsis:

OVAL is CVE Compatible