CVE Vulnerabilities

CVE-2004-1922

Published: Apr 11, 2004 | Modified: Jul 23, 2021
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.6 LOW
AV:N/AC:H/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

Microsoft Internet Explorer 5.5 and 6.0 allocates memory based on the memory size written in the BMP file instead of the actual BMP file size, which allows remote attackers to cause a denial of service (memory consumption) via a small BMP file with has a large memory size.

Affected Software

Name Vendor Start Version End Version
Internet_explorer Microsoft 5.5 5.5
Internet_explorer Microsoft 6.0 6.0

References