CVE-2005-2304: Medium severity microsoft msn messenger vulnerability
Microsoft MSN Messenger 9.0 and Internet Explorer 6.0 allows remote attackers to cause a denial of service (crash) via an image with an ICC Profile with a large Tag Count.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-2304?
CVE-2005-2304 has a high severity rating due to its potential to cause a denial of service by crashing vulnerable applications.
How do I fix CVE-2005-2304?
To fix CVE-2005-2304, users should update Microsoft MSN Messenger and Internet Explorer to the latest versions provided by Microsoft.
Which versions of software are affected by CVE-2005-2304?
CVE-2005-2304 affects Microsoft Windows Live Messenger version 9.0 and Internet Explorer version 6.0.
Is CVE-2005-2304 an exploitable vulnerability?
Yes, CVE-2005-2304 is exploitable, allowing attackers to remotely crash the application using a specially crafted image.
What type of attack does CVE-2005-2304 involve?
CVE-2005-2304 involves a denial of service attack caused by an image with a malformed ICC Profile.