First published: Sat Dec 31 2005(Updated: )
The Outlook Progress Ctl control allows remote attackers to cause a denial of service (Internet Explorer crash) by creating a COM object of the class associated with the control's CLSID, which is not intended for use within Internet Explorer.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-4841 is classified as a high severity vulnerability as it allows remote attackers to crash Internet Explorer.
CVE-2005-4841 allows remote attackers to create a COM object that crashes Internet Explorer by using the Outlook Progress Ctl control.
CVE-2005-4841 affects Internet Explorer version 7.0.
To mitigate CVE-2005-4841, users should apply security updates from Microsoft or refrain from using versions of Internet Explorer that are vulnerable.
If you encounter issues related to CVE-2005-4841, it is recommended to update your Internet Explorer to the latest version or consider using an alternative browser.