First published: Sat Nov 01 1997(Updated: )
Buffer overflow in the HTML library used by Internet Explorer, Outlook Express, and Windows Explorer via the res: local resource protocol.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =4.0 | |
Microsoft Outlook Express | ||
Microsoft Windows Explorer |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0967 is considered a high severity vulnerability due to the potential for remote code execution through a buffer overflow.
To fix CVE-1999-0967, you should apply the latest patches and updates available for Internet Explorer, Outlook Express, and Windows Explorer.
CVE-1999-0967 affects Internet Explorer 4.0, and versions of Outlook Express and Windows Explorer that utilize the vulnerable HTML library.
CVE-1999-0967 can be exploited through specially crafted HTML content that triggers a buffer overflow.
Disabling the use of local resource protocols or avoiding untrusted HTML content can serve as a temporary workaround for CVE-1999-0967.