Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of service (heap memory corruption) or possibly execute arbitrary code via vectors related to improper length calculation and the (1) STSC, (2) STSZ, and (3) STCO atoms.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
History
No history.
Information
Published : 2010-06-15 18:00
Updated : 2024-02-28 11:41
NVD link : CVE-2010-2162
Mitre link : CVE-2010-2162
CVE.ORG link : CVE-2010-2162
JSON object : View
Products Affected
adobe
- flash_player
- air
macromedia
- flash_player
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer