CVE-2006-3729
DataSourceControl in Internet Explorer 6 on Windows XP SP2 with Office installed allows remote attackers to cause a denial of service (crash) via a large negative integer argument to the getDataMemberName method of a OWC11.DataSourceControl.11 object, which leads to an integer overflow and a null dereference.
- Affected products
- Internet Explorer 6, Office, Windows Xp
- Microsoft Internet Explorer
- = 6.0
- Fix
- Available
- CVSS 2.0
- 2.6 LOW
- EPSS
- 20.6% (97th percentile)
- NVD status
- Modified
- Published
- 2006-07-19
CVE-2006-3729 at NVD
1 known exploit for CVE-2006-3729
Proof-of-concept code and exploit modules indexed by Sploitus