CVE-2010-1297
08.06.2010, 18:30
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64; Adobe AIR before 2.0.2.12610; and Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted SWF content, related to authplay.dll and the ActionScript Virtual Machine 2 (AVM2) newfunction instruction, as exploited in the wild in June 2010.Enginsight
Vendor | Product | Version |
---|---|---|
adobe | air | 𝑥 < 2.0.2.12610 |
adobe | flash_player | 𝑥 < 9.0.277.0 |
adobe | flash_player | 10.0 ≤ 𝑥 < 10.1.53.64 |
adobe | acrobat | 8.0 ≤ 𝑥 < 8.2.3 |
adobe | acrobat | 9.0 ≤ 𝑥 < 9.3.3 |
opensuse | opensuse | 11.0 ≤ 𝑥 ≤ 11.2 |
suse | linux_enterprise | 10.0:sp3 |
suse | linux_enterprise | 11.0 |
suse | linux_enterprise | 11.0:sp1 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Ubuntu Product | |||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|
acroread |
| ||||||||||
adobe-flashplugin |
| ||||||||||
flashplugin-nonfree |
|
Common Weakness Enumeration
References