|
 |
|
|
|
| |
|
|
 |
|
LinkScanner Knowledge Base
 |
Exploit: Microsoft VM ByteCode Verifier bug (CVE-2003-0111)
|
Dated Posted: |
04.10.2007
|
Posted By: |
Roger Thompson - CTO
|
Category: |
Research
|
|
|
| |
The ByteCode Verifier component of Microsoft Virtual Machine (VM) build 5.0.3809 and earlier, as used in Windows and Internet Explorer, allows remote attackers to bypass pre-execution security checks and execute arbitrary code via a malicious Java applet. This is also known as the 'Flaw in Microsoft VM Could Enable System Compromise'.
This design flaw allows a malicious, hand-crafted Java applet to set its own security privileges so it can read, write and execute files on the user's computer. It was discovered on 21 November, 2002 by "Last Stage of Delirium" and on 9 May, 2003 Microsoft updated its Java Virtual Machine to 5.0.3810 to correct the problem, as described in (MSO3-011).
(CVE-2003-0111)
|
|
Return to Knowledge Base
|
|
|
Anti Virus Software | Eset NOD32 | Kaspersky | Eset Smart Security | Spyware
Removal Software | Spysweeper
Remove Adware |LinkScanner | LinkScanner Online | Firewalls | Outpost | SonicWALL | Disaster Recovery
Spam Blocker | Security Tools | Computer
Security Tips | Layered
Security Model | Security Software Resources
Solution Certifications | Trusted Reviews | Security Goal | Security
Links
Partners | Press Releases | White Papers | About
Us Home
|
|
Contact Software
Security Solutions at (303) 232-9070
Site Map | Privacy Policy | Legal Notice | Home
©
2008 Software Security Solutions. All rights reserved.
|