Title: Akamai Technologies Download Manager ActiveX Control (DownloadManagerV2.ocx) GetPrivateProfileSectionW Function Overflow
Info
Disclosure
Apr 16, 2007
Discovery
Unknown
Dates
Exploit
Unknown
Solution
Unknown
Description
A remote overflow exists in the Download Manager Active X Control. The 'GetPrivateProfileSectionW()' function gets passed the wrong value for its 'nSize' parameter for wide characters, resulting in a stack overflow. With a specially crafted request, an attacker can execute arbitrary code in the trust relationship between the client and the browser, resulting in a loss of integrity.