Microsoft Internet Explorer 6.0 SP1 allows remote attackers to cause a denial of service (browser crash) via a link with ::{ (colon colon left brace), which triggers a null dereference when the user attempts to save the link using Save As and Internet Explorer prepares an error message with an attacker-controlled format string.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ie | Microsoft | 6.0-sp1 (including) | 6.0-sp1 (including) |