CVE-2009-3244: Buffer Overflow
Heap-based buffer overflow in the SwDir.dll ActiveX control in Adobe Shockwave Player 11.5.1.601 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long PlayerVersion property value.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-3244?
CVE-2009-3244 has a high severity rating as it can lead to denial of service and the potential execution of arbitrary code.
How do I fix CVE-2009-3244?
To fix CVE-2009-3244, upgrade the Adobe Shockwave Player to a version later than 11.5.1.601.
What products are affected by CVE-2009-3244?
CVE-2009-3244 affects Adobe Shockwave Player versions up to and including 11.5.1.601.
What kind of attack can exploit CVE-2009-3244?
CVE-2009-3244 can be exploited by attackers to cause a buffer overflow via a specially crafted PlayerVersion property value.
Is there a workaround for CVE-2009-3244?
There is no official workaround for CVE-2009-3244; updating to the latest version is the recommended approach.