Security Advisory

CVE-2010-2867

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2010-08-26 20:00:00
Last updated 2024-08-07 02:46:48
Assigner adobe
State PUBLISHED

Description

DIRAPIX.dll in Adobe Shockwave Player before 11.5.8.612 does not properly handle a certain return value associated with the rcsL chunk in a Director movie, which allows remote attackers to cause a denial of service (heap memory corruption) or execute arbitrary code via a crafted movie, related to a "pointer offset vulnerability."