Microsoft Internet Explorer HTML Tag Long File Name Extension Stack Buffer Overflow Vulnerability (MS08-073)
11 Dec. 2008
Summary
Internet Explorer is a graphical web browser developed by Microsoft Corp. that has been included with Microsoft Windows since 1995. Remote exploitation of a stack buffer overflow vulnerability while handling specific HTML tags in Microsoft Corp.'s Internet Explorer web browser allows attackers to execute arbitrary code within the context of the affected user.
Vulnerable Systems:
* Windows 2000 SP4 running Internet Explorer version 5.01
On Internet Explorer 5.01 a function return address can be overwritten with attacker controlled data which results in an exploitable condition. However on Internet Explorer 6 the vulnerability will only overflow one byte. For Internet Explorer 6 on Windows 2000 platform, the overflowed byte is in a local variable, and overwriting it doesn't affect program execution at all. For Internet Explorer 6 on Windows XP SP2, the overflowed byte is in the stack cookie, which causes Internet Explorer to terminate and only results in a denial of service.