NGSSoftware Insight Security Research Advisory NISR24042003 – There is an exploitable heap overflow vulnerability in Microsoft’s ActiveX control, Plugin.ocx. By default, plugin.ocx is marked safe for scripting, and as such, if an IE user were to visit a malicious web page, the overflow could be triggered allowing for a remote compromise of the user’s machine. Systems Affected: IE 5.01 SP3, 5.5 SP2, 6.0 Gold, 6.0 SP1.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/31058/ie-heap1.txt
Source: https://packetstormsecurity.com/files/31058/ie-heap1.txt.html