CVE-2005-2308

Microsoft IE - Denial of Service

Title source: rule
STIX 2.1

Description

The JPEG decoder in Microsoft Internet Explorer allows remote attackers to cause a denial of service (CPU consumption or crash) and possibly execute arbitrary code via certain crafted JPEG images, as demonstrated using (1) mov_fencepost.jpg, (2) cmp_fencepost.jpg, (3) oom_dos.jpg, or (4) random.jpg.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Michal Zalewski · textdoswindows
https://www.exploit-db.com/exploits/25992

References (5)

Core 5
Core References
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/14285
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/14286
Exploit x_refsource_misc
http://lcamtuf.coredump.cx/crash
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/14284
Exploit mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/405298

Scores

EPSS 0.4584
EPSS Percentile 97.6%

Details

Status published
Products (1)
microsoft/ie 6.0 sp2
Published Jul 19, 2005
Tracked Since Feb 18, 2026