CVE-2011-0556

The Font Xtra.x32 module in Adobe Shockwave Player before 11.5.9.620 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted PFR1 chunk that leads to an unexpected sign extension and an invalid pointer dereference, a different vulnerability than CVE-2011-0569.
Severity
UNKNOWN
AV:N/AC:M/Au:N/C:C/I:C/A:C
Atk. Vector
NETWORK
Atk. Complexity
MEDIUM
Base Score
CVSS 3.x
EPSS Score
Percentile: Unknown
VendorProductVersion
adobeshockwave_player
𝑥
≤ 11.5.9.615
adobeshockwave_player
1.0
adobeshockwave_player
2.0
adobeshockwave_player
3.0
adobeshockwave_player
4.0
adobeshockwave_player
5.0
adobeshockwave_player
6.0
adobeshockwave_player
8.0
adobeshockwave_player
8.0.196
adobeshockwave_player
8.0.196a
adobeshockwave_player
8.0.204
adobeshockwave_player
8.0.205
adobeshockwave_player
8.5.1
adobeshockwave_player
8.5.1.100
adobeshockwave_player
8.5.1.103
adobeshockwave_player
8.5.1.105
adobeshockwave_player
8.5.1.106
adobeshockwave_player
8.5.321
adobeshockwave_player
8.5.323
adobeshockwave_player
8.5.324
adobeshockwave_player
8.5.325
adobeshockwave_player
9.0.383
adobeshockwave_player
9.0.432
adobeshockwave_player
10.0.0.210
adobeshockwave_player
10.0.1.004
adobeshockwave_player
10.1.0.11
adobeshockwave_player
10.1.0.011
adobeshockwave_player
10.1.1.016
adobeshockwave_player
10.1.4.020
adobeshockwave_player
10.2.0.021
adobeshockwave_player
10.2.0.022
adobeshockwave_player
10.2.0.023
adobeshockwave_player
11.0.0.456
adobeshockwave_player
11.0.3.471
adobeshockwave_player
11.5.0.595
adobeshockwave_player
11.5.0.596
adobeshockwave_player
11.5.1.601
adobeshockwave_player
11.5.2.602
adobeshockwave_player
11.5.6.606
adobeshockwave_player
11.5.7.609
adobeshockwave_player
11.5.8.612
𝑥
= Vulnerable software versions