First published: Wed Apr 04 2001(Updated: )
MSHTML.DLL HTML parser in Internet Explorer 4.0, and other versions, allows remote attackers to cause a denial of service (application crash) via a script that creates and deletes an object that is associated with the browser window object.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =4.0 | |
Microsoft Outlook | =2000 | |
Microsoft Outlook Express | =5.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0322 has a moderate severity due to its ability to cause a denial of service by crashing the application.
To fix CVE-2001-0322, users should upgrade to a newer version of Internet Explorer or apply relevant security patches.
CVE-2001-0322 affects Internet Explorer version 4.0 as well as other vulnerable versions.
Yes, Microsoft Outlook 2000 is also vulnerable to CVE-2001-0322.
Yes, CVE-2001-0322 can be exploited remotely via a specially crafted script.