HTTP: Internet Explorer Malformed JPEG Marker Header

This signature detects JPEG files with certain invalid JPEG marker headers. If a host views these malformed images served from a malicious Web server, an attacker could take control of vulnerable hosts and run arbitrary code.

Extended Description

Microsoft Internet Explorer is prone to an unspecified denial of service vulnerability in the JPEG image rendering library used by the browser. This issue was identified by creating random input for the browser, and has not been researched further at this time. This BID will be updated as further information is disclosed. Successful exploitation results in crashing the affected Web browser. This vulnerability also reportedly consumes excessive CPU resources.

Affected Products

Microsoft internet_explorer

Short Name
HTTP:STC:IMG:JPEG-MAL-MARKER
Severity
Info
Recommended
False
Recommended Action
None
Category
HTTP
Keywords
CVE-2005-1988 Explorer Header Internet JPEG Malformed Marker bid:14286
Release Date
09/01/2005
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3375
False Positive
Rarely
Vendors

Microsoft

CVSS Score

5.1

Found a potential security threat?