Microsoft Internet Explorer 5.01 through 6 allows remote attackers to execute arbitrary code via crafted layout combinations involving DIV tags and HTML CSS float properties that trigger memory corruption, aka "HTML Rendering Memory Corruption Vulnerability."
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-067
No PoCs found on GitHub currently.