Short Name |
HTTP:STC:IE:GOPHER-IMGTAG |
---|---|
Severity |
Low |
Recommended |
No |
Category |
HTTP |
Keywords |
Internet Explorer Gopher Link Embedded in "IMG" Tag |
Release Date |
2003/04/22 |
Update Number |
1213 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects attempts to exploit a known vulnerability against Microsoft Internet Explorer using the Gopher protocol. On a Web server, attackers can embed a malicious URL in an image tag, causing a client to visit that URL and become vulnerable to arbitrary code execution.
Microsoft Internet Explorer, Proxy Server and ISA Server includes a gopher client. Reportedly, these clients are vulnerable to a buffer overflow condition. The vulnerability exists in the component that parses gopher replies. A malicious server is able to send a reply that will overflow the buffer and run arbitrary code on a user's system.