CVE-2001-0166: High severity Macromedia Shockwave Flash plugin vulnerability
Published Mar 26, 2001
·Updated
Macromedia Shockwave Flash plugin version 8 and earlier allows remote attackers to cause a denial of service via malformed tag length specifiers in a SWF file.
Affected Software
1 affected component
Macromedia Shockwave Flash plugin<=8.0
Event History
Mar 26, 2001
CVE Published
05:00 AM
May 7, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0166?
The severity of CVE-2001-0166 is considered to be high due to its potential to cause denial of service.
2
How do I fix CVE-2001-0166?
To fix CVE-2001-0166, upgrade to a version of the Macromedia Shockwave Flash plugin later than version 8.0.
3
What versions of Shockwave Flash plugin are affected by CVE-2001-0166?
CVE-2001-0166 affects Macromedia Shockwave Flash plugin version 8 and earlier.
4
Can CVE-2001-0166 be exploited remotely?
Yes, CVE-2001-0166 can be exploited remotely by sending malicious SWF files to users.
5
What type of attack does CVE-2001-0166 facilitate?
CVE-2001-0166 facilitates a denial of service attack through malformed tag length specifiers.