CVE-2003-0344: Buffer Overflow
Published Jun 6, 2003
·Updated
Buffer overflow in Microsoft Internet Explorer 5.01, 5.5, and 6.0 allows remote attackers to execute arbitrary code via / (slash) characters in the Type property of an Object tag in a web page.
Affected Software
4 affected components
Microsoft ie=6.0
Microsoft Internet Explorer=5.01
Microsoft Internet Explorer=5.5
Microsoft Internet Explorer=6.0
Remediation
Patch Available
Event History
Jun 6, 2003
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Jun 16, 2003
Data Sourced
via NVD·04:00 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2003-0344?
CVE-2003-0344 has a critical severity rating due to its ability to allow remote code execution.
2
How do I fix CVE-2003-0344?
To mitigate CVE-2003-0344, users should upgrade to a non-vulnerable version of Internet Explorer or apply patches provided by Microsoft.
3
Which versions of Internet Explorer are affected by CVE-2003-0344?
CVE-2003-0344 affects Internet Explorer versions 5.01, 5.5, and 6.0.
4
What type of vulnerability is CVE-2003-0344?
CVE-2003-0344 is classified as a buffer overflow vulnerability.
5
Can CVE-2003-0344 be exploited remotely?
Yes, CVE-2003-0344 can be exploited remotely by attackers through malicious web pages.