The shell32 module in Microsoft Internet Explorer 7.0 on Windows XP SP3 might allow remote attackers to execute arbitrary code via a long VALUE attribute in an INPUT element, possibly related to a stack consumption vulnerability.Referenceshttp://www.securityfocus.com/bid/33494http://www.securityfocus.com/archive/1/500472/100/0/threaded