CVE-2010-1283

Publication date

2010-05-13 17:00:00

Family

adobe

State

PUBLISHED

Description

Adobe Shockwave Player before 11.5.7.609 does not properly parse 3D objects in .dir (aka Director) files, which allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a modified field in a 0xFFFFFF49 record.