Nvidia Install Application ActiveX Buffer Overflow

Strike ID:
E12-w1h01
CVSS:
6.4 (AV:N/AC:L/Au:N/C:P/I:P/A:N)
False Positive:
f
Variants:
1
Year:
2012

Description

This strike exploits a vulnerability in Nvidia Install Apllication's activeX control NVI2.DLL. If an overfly long string is passed to the AddPackages method a buffer will overflow causing a denial of service condition to occur and potentially allowing for remote code execution.