CVE Published: 08/08/2006 |
CVE Updated: 07/08/2024 |
CVE Year: 2006 Source: microsoft |
Vendor: n/a |
Product: n/a Status : PUBLISHED
CVE-2006-3638 Description
Microsoft Internet Explorer 5.01 and 6 does not properly handle uninitialized COM objects, which allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code, as demonstrated by the Nth function in the DirectAnimation.DATuple ActiveX control, aka "COM Object Instantiation Memory Corruption Vulnerability."