Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of service (heap memory corruption) or possibly execute arbitrary code via vectors related to improper length calculation and the (1) STSC, (2) STSZ, and (3) STCO atoms.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
History
21 Nov 2024, 01:16
Type | Values Removed | Values Added |
---|---|---|
References | () http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751 - | |
References | () http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html - | |
References | () http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00000.html - | |
References | () http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.html - | |
References | () http://secunia.com/advisories/40144 - | |
References | () http://secunia.com/advisories/40545 - | |
References | () http://secunia.com/advisories/43026 - | |
References | () http://security.gentoo.org/glsa/glsa-201101-09.xml - | |
References | () http://securitytracker.com/id?1024085 - | |
References | () http://securitytracker.com/id?1024086 - | |
References | () http://support.apple.com/kb/HT4435 - | |
References | () http://www.adobe.com/support/security/bulletins/apsb10-14.html - Patch, Vendor Advisory | |
References | () http://www.redhat.com/support/errata/RHSA-2010-0464.html - | |
References | () http://www.redhat.com/support/errata/RHSA-2010-0470.html - | |
References | () http://www.securityfocus.com/archive/1/511862/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/40759 - | |
References | () http://www.securityfocus.com/bid/40801 - | |
References | () http://www.turbolinux.co.jp/security/2010/TLSA-2010-19j.txt - | |
References | () http://www.us-cert.gov/cas/techalerts/TA10-162A.html - US Government Resource | |
References | () http://www.vupen.com/english/advisories/2010/1421 - | |
References | () http://www.vupen.com/english/advisories/2010/1432 - | |
References | () http://www.vupen.com/english/advisories/2010/1434 - | |
References | () http://www.vupen.com/english/advisories/2010/1453 - | |
References | () http://www.vupen.com/english/advisories/2010/1482 - | |
References | () http://www.vupen.com/english/advisories/2010/1522 - | |
References | () http://www.vupen.com/english/advisories/2010/1793 - | |
References | () http://www.vupen.com/english/advisories/2011/0192 - | |
References | () http://www.zerodayinitiative.com/advisories/ZDI-10-109 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16345 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7166 - |
Information
Published : 2010-06-15 18:00
Updated : 2024-11-21 01:16
NVD link : CVE-2010-2162
Mitre link : CVE-2010-2162
CVE.ORG link : CVE-2010-2162
JSON object : View
Products Affected
adobe
- air
- flash_player
macromedia
- flash_player
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer