Description
Microsoft Internet Explorer 6 and earlier allows remote attackers to cause a denial of service (application hang) via a CSS-formatted HTML INPUT element within a DIV element that has a larger size than the INPUT.
References (3)
Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry
x_refsource_osvdb
http://www.osvdb.org/28614
Various Sources x_refsource_misc
http://jonas.elunic.de/blog/index.php/2006/07/14/ie-freeze-bug/
Third Party Advisory mailing-list
x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2006-07/0199.html
Scores
EPSS
0.1659
EPSS Percentile
96.7%
Details
Status
published
Products (1)
microsoft/ie
< 6
Published
Sep 19, 2006
Tracked Since
Feb 18, 2026