Denial of Service Vulnerability in Adobe Shockwave Player and Director
CVE-2010-0128

Currently unrated

Key Information:

Vendor

Adobe

Status
Vendor
CVE Published:
13 May 2010

What is CVE-2010-0128?

An integer signedness error in the dirapi.dll of Adobe Shockwave Player and Adobe Director prior to version 11.5.7.609 enables remote attackers to exploit crafted .dir files. This may lead to memory corruption, potentially allowing execution of arbitrary code or causing a denial of service. Users are urged to update their software to mitigate these risks.

References

EPSS Score

10% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.