This application requires Javascript for optimal performance.

MS.IE.DT.DDS.OrgChart.GDD.Layout.ActiveX.Object.Access

Alias(es)

IE.DT.DDS.OrgChart.GDD.Layout.ActiveX.Object.Access, IE.DT.DDS.Straight.Line.Routing.Logic2.ActiveX.Object.Access, IE.DT.Icon.Control.ActiveX.Object.Access, IE.DT.DDS.Circular.Auto.Layout.Logic2.ActiveX.Object.Access, IE.Script.Action.Handler.BufferOverflow, IE.DT.DDS.Rectilinear.GDD.Route.ActiveX.Object.Access, IE.DT.DDS.Rectilinear.GDD.Layout.ActiveX.Object.Access, IE.DT.DDS.OrgChart.GDD.Route.ActiveX.Object.Access, IE.Script.Action.Handler.Buffer.Overflow, IE.Script.Action.Handler.Buffer.Overflow.B

Release Date

Apr 12, 2006

Severity

medium

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates an attack attempt to exploit a buffer overflow vulnerability in the GDD Layout ActiveX Control for Microsoft Internet Explorer.

Affected Products

Internet Explorer 6 SP2 and earlier.

Recommended Actions

Apply patch, available from the web site:
http://www.microsoft.com/technet/security/bulletin/ms06-013.mspx

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2006-1359
CVE-2006-1186
CVE-2006-1189
CVE-2006-1192
CVE-2006-1185
CVE-2006-1388
CVE-2006-1190
CVE-2006-1188
CVE-2006-1245
CVE-2006-1191

Reference/s

http://www.securityfocus.com/bid/17454 (BugTraq)
http://www.securityfocus.com/bid/17453 (BugTraq)
http://www.microsoft.com/technet/security/Bulletin/MS06-013.mspx (MS-ID)
http://www.securityfocus.com/bid/17181 (BugTraq)
http://www.securityfocus.com/bid/17457 (BugTraq)
http://www.securityfocus.com/bid/17196 (BugTraq)
http://www.securityfocus.com/bid/17450 (BugTraq)
http://www.securityfocus.com/bid/17455 (BugTraq)
http://www.securityfocus.com/bid/17460 (BugTraq)
http://www.securityfocus.com/bid/17131 (BugTraq)

Reference: VID-11849