CVE-2010-0186

Cross-domain vulnerability in Adobe Flash Player before 10.0.45.2, Adobe AIR before 1.5.3.9130, and Adobe Reader and Acrobat 8.x before 8.2.1 and 9.x before 9.3.1 allows remote attackers to bypass intended sandbox restrictions and make cross-domain requests via unspecified vectors.
References
Link Resource
http://lists.apple.com/archives/security-announce/2010//Jun/msg00001.html
http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00004.html
http://secunia.com/advisories/38547 Vendor Advisory
http://secunia.com/advisories/38639 Vendor Advisory
http://secunia.com/advisories/38915
http://secunia.com/advisories/40220
http://secunia.com/advisories/43026
http://security.gentoo.org/glsa/glsa-201101-09.xml
http://securitytracker.com/id?1023585
http://support.apple.com/kb/HT4188
http://www.adobe.com/support/security/bulletins/apsb10-06.html Patch Vendor Advisory
http://www.adobe.com/support/security/bulletins/apsb10-07.html Patch Vendor Advisory
http://www.osvdb.org/62300
http://www.redhat.com/support/errata/RHSA-2010-0114.html
http://www.securityfocus.com/bid/38198
http://www.vupen.com/english/advisories/2010/1481
http://www.vupen.com/english/advisories/2011/0192
https://bugzilla.redhat.com/show_bug.cgi?id=563819
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8518
https://rhn.redhat.com/errata/RHSA-2010-0102.html
https://rhn.redhat.com/errata/RHSA-2010-0103.html
http://lists.apple.com/archives/security-announce/2010//Jun/msg00001.html
http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00004.html
http://secunia.com/advisories/38547 Vendor Advisory
http://secunia.com/advisories/38639 Vendor Advisory
http://secunia.com/advisories/38915
http://secunia.com/advisories/40220
http://secunia.com/advisories/43026
http://security.gentoo.org/glsa/glsa-201101-09.xml
http://securitytracker.com/id?1023585
http://support.apple.com/kb/HT4188
http://www.adobe.com/support/security/bulletins/apsb10-06.html Patch Vendor Advisory
http://www.adobe.com/support/security/bulletins/apsb10-07.html Patch Vendor Advisory
http://www.osvdb.org/62300
http://www.redhat.com/support/errata/RHSA-2010-0114.html
http://www.securityfocus.com/bid/38198
http://www.vupen.com/english/advisories/2010/1481
http://www.vupen.com/english/advisories/2011/0192
https://bugzilla.redhat.com/show_bug.cgi?id=563819
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8518
https://rhn.redhat.com/errata/RHSA-2010-0102.html
https://rhn.redhat.com/errata/RHSA-2010-0103.html
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:adobe:adobe_air:*:*:*:*:*:*:*:*
cpe:2.3:a:adobe:adobe_air:1.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:adobe_air:1.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:adobe_air:1.5.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:adobe_air:1.5.2:*:*:*:*:*:*:*
cpe:2.3:a:adobe:adobe_air:1.5.3:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:6.0.21.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:6.0.79:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:7.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:7.0.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:7.0.25:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:7.0.63:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:7.0.69.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:7.0.70.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:7.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:7.1.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:7.2:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:8.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:8.0.22.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:8.0.24.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:8.0.33.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:8.0.34.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:8.0.35.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:8.0.39.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:8.0.42.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.16:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.18d60:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.20:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.20.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.28.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.31:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.31.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.45.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.47.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.48.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.112.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.114.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.115.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.124.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.125.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.151.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.152.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.159.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.246.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.0.260.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:9.125.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:10.0.12.10:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:10.0.12.36:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:10.0.15.3:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:10.0.22.87:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:10.0.32.18:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:adobe:acrobat:*:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat:8.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat:8.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat:8.1.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat:8.1.2:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat:8.1.3:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat:8.1.4:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat:8.1.5:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat:8.1.6:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat:8.1.7:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat:9.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat:9.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat:9.1.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat:9.1.2:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat:9.1.3:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat:9.2:*:*:*:*:*:*:*

Configuration 3 (hide)

OR cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:8.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:8.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:8.1.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:8.1.2:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:8.1.4:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:8.1.5:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:8.1.6:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:8.1.7:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:9.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:9.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:9.1.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:9.1.2:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:9.1.3:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:9.2:*:*:*:*:*:*:*

History

21 Nov 2024, 01:11

Type Values Removed Values Added
References () http://lists.apple.com/archives/security-announce/2010//Jun/msg00001.html - () http://lists.apple.com/archives/security-announce/2010//Jun/msg00001.html -
References () http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00004.html - () http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00004.html -
References () http://secunia.com/advisories/38547 - Vendor Advisory () http://secunia.com/advisories/38547 - Vendor Advisory
References () http://secunia.com/advisories/38639 - Vendor Advisory () http://secunia.com/advisories/38639 - Vendor Advisory
References () http://secunia.com/advisories/38915 - () http://secunia.com/advisories/38915 -
References () http://secunia.com/advisories/40220 - () http://secunia.com/advisories/40220 -
References () http://secunia.com/advisories/43026 - () http://secunia.com/advisories/43026 -
References () http://security.gentoo.org/glsa/glsa-201101-09.xml - () http://security.gentoo.org/glsa/glsa-201101-09.xml -
References () http://securitytracker.com/id?1023585 - () http://securitytracker.com/id?1023585 -
References () http://support.apple.com/kb/HT4188 - () http://support.apple.com/kb/HT4188 -
References () http://www.adobe.com/support/security/bulletins/apsb10-06.html - Patch, Vendor Advisory () http://www.adobe.com/support/security/bulletins/apsb10-06.html - Patch, Vendor Advisory
References () http://www.adobe.com/support/security/bulletins/apsb10-07.html - Patch, Vendor Advisory () http://www.adobe.com/support/security/bulletins/apsb10-07.html - Patch, Vendor Advisory
References () http://www.osvdb.org/62300 - () http://www.osvdb.org/62300 -
References () http://www.redhat.com/support/errata/RHSA-2010-0114.html - () http://www.redhat.com/support/errata/RHSA-2010-0114.html -
References () http://www.securityfocus.com/bid/38198 - () http://www.securityfocus.com/bid/38198 -
References () http://www.vupen.com/english/advisories/2010/1481 - () http://www.vupen.com/english/advisories/2010/1481 -
References () http://www.vupen.com/english/advisories/2011/0192 - () http://www.vupen.com/english/advisories/2011/0192 -
References () https://bugzilla.redhat.com/show_bug.cgi?id=563819 - () https://bugzilla.redhat.com/show_bug.cgi?id=563819 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8518 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8518 -
References () https://rhn.redhat.com/errata/RHSA-2010-0102.html - () https://rhn.redhat.com/errata/RHSA-2010-0102.html -
References () https://rhn.redhat.com/errata/RHSA-2010-0103.html - () https://rhn.redhat.com/errata/RHSA-2010-0103.html -

Information

Published : 2010-02-15 18:30

Updated : 2024-11-21 01:11


NVD link : CVE-2010-0186

Mitre link : CVE-2010-0186

CVE.ORG link : CVE-2010-0186


JSON object : View

Products Affected

adobe

  • acrobat_reader
  • adobe_air
  • flash_player
  • acrobat