CVE Vulnerabilities

CVE-2004-1922

Published: Apr 11, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.6 LOW
AV:N/AC:H/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Microsoft Internet Explorer 5.5 and 6.0 allocates memory based on the memory size written in the BMP file instead of the actual BMP file size, which allows remote attackers to cause a denial of service (memory consumption) via a small BMP file with has a large memory size.

Affected Software

NameVendorStart VersionEnd Version
Internet_explorerMicrosoft5.5 (including)5.5 (including)
Internet_explorerMicrosoft6.0 (including)6.0 (including)

References