Security Advisory

CVE-2006-3086

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2006-06-19 19:00:00
Last updated 2024-08-07 18:16:06
Assigner mitre
State PUBLISHED

Description

Stack-based buffer overflow in the HrShellOpenWithMonikerDisplayName function in Microsoft Hyperlink Object Library (hlink.dll) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long hyperlink, as demonstrated using an Excel worksheet with a long link in Unicode, aka "Hyperlink COM Object Buffer Overflow Vulnerability." NOTE: this is a different issue than CVE-2006-3059.