|
A remote overflow exists in Internet Explorer. A specialy crafted HTML page using client-side script with the ActiveX object "DXImageTransform.Microsoft.Gradient.1" could cause the browser to crash, and potentially lead to arbitrary code execution. This is due to MSIE failing to handle large values in the "StartColorStr" and "EndColorStr" properties of the ActiveX object resulting in a stack overflow.
|