Vulnerabilities > CVE-2005-1988 - Unspecified vulnerability in Microsoft IE and Internet Explorer
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Unknown vulnerability in Internet Explorer 5.0, 5.5, and 6.0 allows remote attackers to execute arbitrary code via a web site or an HTML e-mail containing a crafted JPEG image that causes memory corruption, aka "JPEG Image Rendering Memory Corruption Vulnerability".
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |
Exploit-Db
description Microsoft Internet Explorer 5.0.1 JPEG Image Rendering Unspecified Buffer Overflow Vulnerability. CVE-2005-1988. Dos exploit for windows platform id EDB-ID:25991 last seen 2016-02-03 modified 2005-07-15 published 2005-07-15 reporter Michal Zalewski source https://www.exploit-db.com/download/25991/ title Microsoft Internet Explorer 5.0.1 JPEG Image Rendering Unspecified Buffer Overflow Vulnerability description MS Internet Explorer (blnmgr.dll) COM Object Remote Exploit (MS05-038). CVE-2005-1988,CVE-2005-1989,CVE-2005-1990. Remote exploit for windows platform id EDB-ID:1144 last seen 2016-01-31 modified 2005-08-09 published 2005-08-09 reporter FrSIRT source https://www.exploit-db.com/download/1144/ title Microsoft Internet Explorer blnmgr.dll COM Object Remote Exploit MS05-038
Nessus
NASL family | Windows : Microsoft Bulletins |
NASL id | SMB_NT_MS05-038.NASL |
description | The remote host contains a version of the Internet Explorer that is vulnerable to multiple security flaws (JPEG Rendering, Web Folder, COM Object) that could allow an attacker to execute arbitrary code on the remote host by constructing a malicious web page and entice a victim to visit this web page. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 19401 |
published | 2005-08-09 |
reporter | This script is Copyright (C) 2005-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/19401 |
title | MS05-038: Cumulative Security Update for Internet Explorer (896727) |
code |
|
Oval
accepted 2014-02-24T04:00:09.128-05:00 class vulnerability contributors name Harvey Rubinovitz organization The MITRE Corporation name Robert L. Hollis organization ThreatGuard, Inc. name Maria Mikhno organization ALTX-SOFT
description Unknown vulnerability in Internet Explorer 5.0, 5.5, and 6.0 allows remote attackers to execute arbitrary code via a web site or an HTML e-mail containing a crafted JPEG image that causes memory corruption, aka "JPEG Image Rendering Memory Corruption Vulnerability". family windows id oval:org.mitre.oval:def:1140 status accepted submitted 2005-08-23T04:00:00.000-04:00 title IE6,SP1 JPEG Image Rendering Memory Corruption Vulnerability version 67 accepted 2014-02-24T04:00:10.820-05:00 class vulnerability contributors name Harvey Rubinovitz organization The MITRE Corporation name Robert L. Hollis organization ThreatGuard, Inc. name Robert L. Hollis organization ThreatGuard, Inc. name Sudhir Gandhe organization Telos name Shane Shaffer organization G2, Inc. name Maria Mikhno organization ALTX-SOFT
description Unknown vulnerability in Internet Explorer 5.0, 5.5, and 6.0 allows remote attackers to execute arbitrary code via a web site or an HTML e-mail containing a crafted JPEG image that causes memory corruption, aka "JPEG Image Rendering Memory Corruption Vulnerability". family windows id oval:org.mitre.oval:def:1216 status accepted submitted 2005-08-23T04:00:00.000-04:00 title IE6 Server 2003 JPEG Image Rendering Memory Corruption Vulnerability version 72 accepted 2014-02-24T04:00:14.793-05:00 class vulnerability contributors name Harvey Rubinovitz organization The MITRE Corporation name Robert L. Hollis organization ThreatGuard, Inc. name Maria Mikhno organization ALTX-SOFT
description Unknown vulnerability in Internet Explorer 5.0, 5.5, and 6.0 allows remote attackers to execute arbitrary code via a web site or an HTML e-mail containing a crafted JPEG image that causes memory corruption, aka "JPEG Image Rendering Memory Corruption Vulnerability". family windows id oval:org.mitre.oval:def:1335 status accepted submitted 2005-08-23T04:00:00.000-04:00 title IE6 for XP,SP2 JPEG Image Rendering Memory Corruption Vulnerability version 67 accepted 2014-02-24T04:03:17.280-05:00 class vulnerability contributors name Harvey Rubinovitz organization The MITRE Corporation name Robert L. Hollis organization ThreatGuard, Inc. name Robert L. Hollis organization ThreatGuard, Inc. name Maria Mikhno organization ALTX-SOFT
description Unknown vulnerability in Internet Explorer 5.0, 5.5, and 6.0 allows remote attackers to execute arbitrary code via a web site or an HTML e-mail containing a crafted JPEG image that causes memory corruption, aka "JPEG Image Rendering Memory Corruption Vulnerability". family windows id oval:org.mitre.oval:def:390 status accepted submitted 2005-08-23T04:00:00.000-04:00 title IE5.01,SP4 JPEG Image Rendering Memory Corruption Vulnerability version 68
References
- http://www.us-cert.gov/cas/techalerts/TA05-221A.html
- http://www.kb.cert.org/vuls/id/965206
- http://secunia.com/advisories/16373/
- http://www.vupen.com/english/advisories/2005/1353
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A390
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1335
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1216
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1140
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2005/ms05-038