CVE-2008-1442
Heap-based buffer overflow in the substringData method in Microsoft Internet Explorer 6 and 7 allows remote attackers to execute arbitrary code, related to an unspecified manipulation of a DOM object before a call to this method, aka the "HTML Objects Memory Corruption Vulnerability."
Date published : 2008-06-11
http://www.securityfocus.com/bid/29556
http://www.securityfocus.com/archive/1/493253/100/0/threaded
