Windows IE5 vulnerable to BMP image security flaw.
Posted by admin / Under BMP 1 VariantsMicrosoft Internet Explorer Integer Overflow in Processing Bitmap Files Lets Remote Users Execute Arbitrary Code SecurityTracker Alert ID: 1009067 CVE Reference: GENERIC-MAP-NOMATCH (Links to External Site) Date: Feb 15 2004 Impact: Execution of arbitrary code via network, User access via network Exploit Included: Yes Version(s): 5 (6 is reportedly not vulnerable) Description: A vulnerability was reported in Microsoft Internet Explorer (IE) version 5. A remote user can execute arbitrary code on the target system. It is reported that a remote user can create a specially crafted bitmap file that, when loaded by IE, will trigger an integer overflow and execute...




