CVE-2006-6659: Medium severity Microsoft Outlook vulnerability
Published Dec 20, 2006
·Updated
The Microsoft Office Outlook Recipient ActiveX control (ole32.dll) in Windows XP SP2 allows remote attackers to cause a denial of service (Internet Explorer 7 hang) via crafted HTML.
Affected Software
3 affected components
Microsoft Outlook
Microsoft ie=7.0
Microsoft Windows XP=sp2
Event History
Dec 20, 2006
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Data Sourced
via NVD·02:28 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2006-6659?
CVE-2006-6659 is considered to have a moderate severity level due to its potential to cause denial of service.
2
How do I fix CVE-2006-6659?
To mitigate CVE-2006-6659, users should install the latest security updates for Microsoft Outlook and Internet Explorer.
3
Which versions of software are affected by CVE-2006-6659?
CVE-2006-6659 affects Microsoft Outlook, Internet Explorer 7, and Windows XP SP2.
4
What type of attack does CVE-2006-6659 involve?
CVE-2006-6659 involves a denial of service attack that can hang Internet Explorer when processing crafted HTML.
5
Is CVE-2006-6659 easily exploitable?
CVE-2006-6659 can be exploited remotely, potentially allowing attackers to cause application hangs.