Short Name |
HTTP:STC:IE:INFINITE-ARRAY |
---|---|
Severity |
Info |
Recommended |
No |
Category |
HTTP |
Keywords |
IE infinite array sort dos |
Release Date |
2005/02/25 |
Update Number |
1213 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects attempts to exploit a known vulnerability in Microsoft Internet Explorer (IE). Attackers can create a maliciously crafted Web page that, when opened using IE, causes the browser to execute an infinite JavaScript array sort. This operation can cause a denial of service (DoS) on the target host.
Microsoft Internet is prone to a vulnerability that may result in a browser crash. This issue is exposed when the browser performs an infinite JavaScript array sort operation. It is conjectured that this will only result in a denial of service and is not further exploitable to execute arbitrary code, though this has not been confirmed.