CVE-2011-0557

Integer overflow in Adobe Shockwave Player before 11.5.9.620 allows remote attackers to execute arbitrary code via a Director movie with a large count value in 3D assets type 0xFFFFFF45 record, which triggers a "faulty allocation" and memory corruption.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:adobe:shockwave_player:*:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:1.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:2.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:3.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:4.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:5.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:6.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:8.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:8.0.196:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:8.0.196a:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:8.0.204:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:8.0.205:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:8.5.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:8.5.1.100:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:8.5.1.103:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:8.5.1.105:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:8.5.1.106:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:8.5.321:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:8.5.323:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:8.5.324:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:8.5.325:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:9:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:9.0.383:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:9.0.432:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:10.0.0.210:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:10.0.1.004:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:10.1.0.11:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:10.1.0.011:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:10.1.1.016:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:10.1.4.020:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:10.2.0.021:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:10.2.0.022:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:10.2.0.023:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:11.0.0.456:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:11.0.3.471:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:11.5.0.595:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:11.5.0.596:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:11.5.1.601:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:11.5.2.602:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:11.5.6.606:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:11.5.7.609:*:*:*:*:*:*:*
cpe:2.3:a:adobe:shockwave_player:11.5.8.612:*:*:*:*:*:*:*

History

21 Nov 2024, 01:24

Type Values Removed Values Added
References () http://www.adobe.com/support/security/bulletins/apsb11-01.html - Patch, Vendor Advisory () http://www.adobe.com/support/security/bulletins/apsb11-01.html - Patch, Vendor Advisory
References () http://www.securityfocus.com/archive/1/516323/100/0/threaded - () http://www.securityfocus.com/archive/1/516323/100/0/threaded -
References () http://www.securityfocus.com/bid/46330 - () http://www.securityfocus.com/bid/46330 -
References () http://www.securitytracker.com/id?1025056 - () http://www.securitytracker.com/id?1025056 -
References () http://www.vupen.com/english/advisories/2011/0335 - Vendor Advisory () http://www.vupen.com/english/advisories/2011/0335 - Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/65259 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/65259 -

Information

Published : 2011-02-10 16:00

Updated : 2024-11-21 01:24


NVD link : CVE-2011-0557

Mitre link : CVE-2011-0557

CVE.ORG link : CVE-2011-0557


JSON object : View

Products Affected

adobe

  • shockwave_player
CWE
CWE-189

Numeric Errors