CVE-2005-4843: High severity Microsoft Internet Explorer vulnerability
Published Dec 31, 2005
·Updated
The SmartConnect Class control allows remote attackers to cause a denial of service (Internet Explorer crash) by creating a COM object of the class associated with the control's CLSID, which is not intended for use within Internet Explorer.
Affected Software
1 affected component
Microsoft Internet Explorer=7.0
Event History
Dec 31, 2005
CVE Published
05:00 AM
Jun 11, 2007
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-4843?
CVE-2005-4843 is classified as a moderate severity vulnerability due to its potential to cause denial of service in Internet Explorer.
2
How do I fix CVE-2005-4843?
To fix CVE-2005-4843, update to the latest version of Internet Explorer that is available for your system.
3
What impact does CVE-2005-4843 have on my system?
CVE-2005-4843 can lead to crashes in Internet Explorer, resulting in a denial of service for users.
4
Is CVE-2005-4843 easy to exploit?
Yes, CVE-2005-4843 can be exploited remotely by attackers creating a specific COM object.
5
Which versions of Internet Explorer are affected by CVE-2005-4843?
CVE-2005-4843 specifically affects Internet Explorer version 7.0.