CVE-2005-4841

Internet Explorer - Denial of Service via Outlook Progress Ctl COM Object

Title source: llm
STIX 2.1

Description

The Outlook Progress Ctl control allows remote attackers to cause a denial of service (Internet Explorer crash) by creating a COM object of the class associated with the control's CLSID, which is not intended for use within Internet Explorer.

References (1)

Core 1
Core References
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/391803

Scores

EPSS 0.0920
EPSS Percentile 94.8%

Details

Status published
Products (1)
microsoft/internet_explorer 7.0
Published Dec 31, 2005
Tracked Since Feb 18, 2026