First published: Tue Sep 24 2002(Updated: )
Buffer overflow in a legacy ActiveX control used to display specially formatted text in Microsoft Internet Explorer 5.01, 5.5, and 6.0 allows remote attackers to execute arbitrary code, aka "Buffer Overrun in Legacy Text Formatting ActiveX Control".
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =5.01 | |
Internet Explorer | =5.5-sp2 | |
Internet Explorer | =5.5 | |
Internet Explorer | =5.01-sp1 | |
Internet Explorer | =5.01-sp2 | |
Internet Explorer | =5.5-sp1 | |
Internet Explorer | =6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-0647 has a medium severity rating due to the potential for remote code execution.
To fix CVE-2002-0647, users should update Internet Explorer to a version that is not affected by the vulnerability.
CVE-2002-0647 affects Microsoft Internet Explorer versions 5.01, 5.5, and 6.0.
CVE-2002-0647 is classified as a buffer overflow vulnerability.
Yes, CVE-2002-0647 can be exploited remotely by attackers through specially formatted text.