CVE-2003-1048

Severity
7.8HIGH
EPSS
33.2%
top 3.10%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 27
Latest updateApr 29

Description

Double free vulnerability in mshtml.dll for certain versions of Internet Explorer 6.x allows remote attackers to cause a denial of service (application crash) via a malformed GIF image.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages3 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-9c7h-3j4x-5hw6: Double free vulnerability in mshtml2022-04-29
CVEList
CVE-2003-1048: Double free vulnerability in mshtml2004-07-21
CVE-2003-1048 (HIGH CVSS 7.8) | Double free vulnerability in mshtml | cvebase.io