Vulnerabilities > CVE-2008-4127 - Resource Management Errors vulnerability in Microsoft Internet Explorer 7.0.5730/8.0.6001

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL

Summary

Mshtml.dll in Microsoft Internet Explorer 7 Gold 7.0.5730 and 8 Beta 8.0.6001 on Windows XP SP2 allows remote attackers to cause a denial of service (failure of subsequent image rendering) via a crafted PNG file, related to an infinite loop in the CDwnTaskExec::ThreadExec function.

Vulnerable Configurations

Part Description Count
Application
Microsoft
2
OS
Microsoft
1

Common Weakness Enumeration (CWE)