CVE-2007-0429
DivX Player 6.4.1 - Denial of Service via GoWindowed Method
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-0429. PoCs published by shinnai.
AI-analyzed exploit summary This exploit triggers a Denial of Service (DoS) in DivXBrowserPlugin (npdivx32.dll) by calling the GoWindowed() method on a malformed OBJECT element in Internet Explorer. It targets DivX Player 6.4.1 and causes the plugin to crash.
Description
DivXBrowserPlugin (aka DivX Web Player) npdivx32.dll, as distributed with DivX Player 6.4.1, allows remote attackers to cause a denial of service (Internet Explorer 7 crash) by invoking the GoWindowed method for a certain instance of the ActiveX object.
Exploits (1)
This exploit triggers a Denial of Service (DoS) in DivXBrowserPlugin (npdivx32.dll) by calling the GoWindowed() method on a malformed OBJECT element in Internet Explorer. It targets DivX Player 6.4.1 and causes the plugin to crash.