A memory corruption flaw in the Terminal Services COM object (tsuserex.dll) affects users of Internet Explorer 6. By instantiating itself as an ActiveX object, a malformed Terminal Services COM object allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code.
- ISS Xforce advisory: #28444