← All CVEs

CVE-2008-4127

medium · 4.3

Mshtml.dll in Microsoft Internet Explorer 7 Gold 7.0.5730 and 8 Beta 8.0.6001 on Windows XP SP2 allows remote attackers to cause a denial of service (failure of subsequent image rendering) via a crafted PNG file, related to an infinite loop in the CDwnTaskExec::ThreadExec function.

4.3
CVSS
16.4%
EPSS (exploit prob.)
97th
EPSS percentile
2008-09-18
Published

AV:N/AC:M/Au:N/C:N/I:N/A:P

Weaknesses

CWE-399

Affected products

VendorProductAffected versions
microsoftinternet_explorer7.0.5730
microsoftinternet_explorer8.0.6001
microsoftwindows_xpall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2008-4127