A vulnerability has been identified in Microsoft Internet Explorer, which could be exploited by attackers to cause a denial of service. This flaw is due to a NULL pointer dereference error in the HTML Editing component ("mshtmled.dll") when setting the "fonts" property of an "HtmlDlgSafeHelper" object, which could be exploited by attackers to crash a vulnerable browser by tricking a user into visiting a malicious web page.