CVE-2006-3944

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/07/2006
Last modified:
03/04/2025

Description

Microsoft Internet Explorer 6 on Windows XP SP2 allows remote attackers to cause a denial of service (crash) via a (1) Forms.ListBox.1 or (2) Forms.ListBox.1 object with the ListWidth property set to (a) 0x7fffffff, which triggers an integer overflow exception, or to (b) 0x7ffffffe, which triggers a null dereference.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:microsoft:ie:6:windows_xp_sp2:*:*:*:*:*:*