First published: Mon Mar 26 2001(Updated: )
Macromedia Shockwave Flash plugin version 8 and earlier allows remote attackers to cause a denial of service via malformed tag length specifiers in a SWF file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Macromedia Shockwave Flash plugin | <=8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2001-0166 is considered to be high due to its potential to cause denial of service.
To fix CVE-2001-0166, upgrade to a version of the Macromedia Shockwave Flash plugin later than version 8.0.
CVE-2001-0166 affects Macromedia Shockwave Flash plugin version 8 and earlier.
Yes, CVE-2001-0166 can be exploited remotely by sending malicious SWF files to users.
CVE-2001-0166 facilitates a denial of service attack through malformed tag length specifiers.