CVE Vulnerabilities

CVE-2010-1297

Published: Jun 08, 2010 | Modified: Sep 19, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64; Adobe AIR before 2.0.2.12610; and Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted SWF content, related to authplay.dll and the ActionScript Virtual Machine 2 (AVM2) newfunction instruction, as exploited in the wild in June 2010.

Affected Software

Name Vendor Start Version End Version
Flash_player Adobe * 9.0.262.0 (including)
Flash_player Adobe 9.0.16 (including) 9.0.16 (including)
Flash_player Adobe 9.0.18d60 (including) 9.0.18d60 (including)
Flash_player Adobe 9.0.20 (including) 9.0.20 (including)
Flash_player Adobe 9.0.20.0 (including) 9.0.20.0 (including)
Flash_player Adobe 9.0.28 (including) 9.0.28 (including)
Flash_player Adobe 9.0.28.0 (including) 9.0.28.0 (including)
Flash_player Adobe 9.0.31 (including) 9.0.31 (including)
Flash_player Adobe 9.0.31.0 (including) 9.0.31.0 (including)
Flash_player Adobe 9.0.45.0 (including) 9.0.45.0 (including)
Flash_player Adobe 9.0.47.0 (including) 9.0.47.0 (including)
Flash_player Adobe 9.0.48.0 (including) 9.0.48.0 (including)
Flash_player Adobe 9.0.112.0 (including) 9.0.112.0 (including)
Flash_player Adobe 9.0.114.0 (including) 9.0.114.0 (including)
Flash_player Adobe 9.0.115.0 (including) 9.0.115.0 (including)
Flash_player Adobe 9.0.124.0 (including) 9.0.124.0 (including)
Flash_player Adobe 9.0.125.0 (including) 9.0.125.0 (including)
Flash_player Adobe 9.0.151.0 (including) 9.0.151.0 (including)
Flash_player Adobe 9.0.152.0 (including) 9.0.152.0 (including)
Flash_player Adobe 9.0.159.0 (including) 9.0.159.0 (including)
Flash_player Adobe 9.0.246.0 (including) 9.0.246.0 (including)
Flash_player Adobe 9.0.260.0 (including) 9.0.260.0 (including)

References