The Java Plug-in 1.4.2_03 and 1.4.2_04 controls, and the 1.4.2_03 and 1.4.2_04 redirector controls, allow remote attackers to cause a denial of service (Internet Explorer crash) by creating a COM object of the class associated with the controls CLSID, which is not intended for use within Internet Explorer.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Java_plug-in | Sun | 1.4.2_03 (including) | 1.4.2_03 (including) |
Java_plug-in | Sun | 1.4.2_04 (including) | 1.4.2_04 (including) |