CVE-2010-4090
- EPSS 6.13%
- Published 29.10.2010 19:00:02
- Last modified 11.04.2025 00:51:21
Adobe Shockwave Player before 11.5.9.615 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.
CVE-2010-2581
- EPSS 6.93%
- Published 29.10.2010 19:00:01
- Last modified 11.04.2025 00:51:21
dirapi.dll in Adobe Shockwave Player before 11.5.9.615 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a Director file containing a crafted pamm chunk with an invalid (1) size and (2) number of s...
CVE-2010-2582
- EPSS 9.88%
- Published 29.10.2010 19:00:01
- Last modified 11.04.2025 00:51:21
An unspecified function in TextXtra.x32 in Adobe Shockwave Player before 11.5.9.615 does not properly reallocate a buffer when processing a DEMX chunk in a Director file, which allows remote attackers to trigger a heap-based buffer overflow and execu...
CVE-2010-3653
- EPSS 77.78%
- Published 26.10.2010 18:00:01
- Last modified 11.04.2025 00:51:21
The Director module (dirapi.dll) in Adobe Shockwave Player before 11.5.9.615 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a Director movie with a crafted rcsL chunk containing a field whose va...
CVE-2010-2874
- EPSS 10.34%
- Published 07.09.2010 18:00:02
- Last modified 11.04.2025 00:51:21
Unspecified vulnerability in Adobe Shockwave Player before 11.5.8.612 allows remote attackers to execute arbitrary code via unknown vectors that trigger memory corruption. NOTE: due to conflicting information and use of the same CVE identifier by th...
CVE-2010-2871
- EPSS 14.29%
- Published 26.08.2010 21:00:02
- Last modified 11.04.2025 00:51:21
Integer overflow in the 3D object functionality in Adobe Shockwave Player before 11.5.8.612 allows remote attackers to cause a denial of service (heap memory corruption) or execute arbitrary code via a crafted size value in a 0xFFFFFF45 RIFF record i...
CVE-2010-2872
- EPSS 11.05%
- Published 26.08.2010 21:00:02
- Last modified 11.04.2025 00:51:21
Adobe Shockwave Player before 11.5.8.612 does not properly validate an offset value in the pami RIFF chunk in a Director movie, which allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a crafted mov...
CVE-2010-2873
- EPSS 11.05%
- Published 26.08.2010 21:00:02
- Last modified 11.04.2025 00:51:21
Adobe Shockwave Player before 11.5.8.612 does not properly validate offset values in the rcsL RIFF chunks of (1) .DIR and (2) .DCR Director movies, which allows remote attackers to cause a denial of service (heap memory corruption) or execute arbitra...
CVE-2010-2875
- EPSS 11.91%
- Published 26.08.2010 21:00:02
- Last modified 11.04.2025 00:51:21
Integer signedness error in Adobe Shockwave Player before 11.5.8.612 allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a length value associated with the tSAC chunk in a Director movie.
CVE-2010-2876
- EPSS 11.05%
- Published 26.08.2010 21:00:02
- Last modified 11.04.2025 00:51:21
Adobe Shockwave Player before 11.5.8.612 does not properly validate values associated with buffer-size calculation for a 0xFFFFFFF8 record in a (1) .dir or (2) .dcr Director movie, which allows remote attackers to cause a denial of service (heap memo...