First published: Thu Jul 10 2003(Updated: )
Certain versions of Internet Explorer 5 and 6, in certain Windows environments, allow remote attackers to cause a denial of service (freeze) via a URL to C:\aux (MS-DOS device name) and possibly other devices.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =5.0 | |
Internet Explorer | =6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-0519 has a severity rating of medium, as it causes a denial of service in affected versions of Internet Explorer.
To fix CVE-2003-0519, users should update to the latest patch for Internet Explorer 5 or 6 provided by Microsoft.
CVE-2003-0519 affects Internet Explorer versions 5.0 and 6.0 on certain Windows environments.
Yes, CVE-2003-0519 can be exploited remotely, causing the browser to freeze when a specific URL is accessed.
A possible workaround for CVE-2003-0519 is to avoid opening URLs that reference MS-DOS device names in Internet Explorer.