Security Advisory

CVE-2010-2873

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2010-08-26 20:00:00
Last updated 2024-08-07 02:46:48
Assigner adobe
State PUBLISHED

Description

Adobe Shockwave Player before 11.5.8.612 does not properly validate offset values in the rcsL RIFF chunks of (1) .DIR and (2) .DCR Director movies, which allows remote attackers to cause a denial of service (heap memory corruption) or execute arbitrary code via a crafted movie.