CVE-2005-4840 describes a denial-of-service vulnerability in the Outlook Express Address Book control when used within Internet Explorer 6. Remote attackers can trigger a browser crash by instantiating the COM object, which was not designed for this context. This vulnerability has a CVSS score of 4.3, indicating a medium attack complexity and partial availability impact, with no confidentiality or integrity impact. There is no public exploit intelligence available, and the CVE has received minimal community discussion or media coverage, suggesting it is not actively exploited.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:a:microsoft:outlook_express_book_control:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:N/I:N/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.