CVE-2010-1280: High severity Adobe Shockwave Player vulnerability
Adobe Shockwave Player before 11.5.7.609 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted .dir (aka Director) file, related to (1) an erroneous dereference and (2) a certain Shock.dir file.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2010-1280?
CVE-2010-1280 has a high severity level due to its potential for remote code execution and denial of service.
How do I fix CVE-2010-1280?
The best mitigation for CVE-2010-1280 is to upgrade Adobe Shockwave Player to version 11.5.7.609 or later.
What types of attacks are possible with CVE-2010-1280?
CVE-2010-1280 allows remote attackers to execute arbitrary code or cause a denial of service through crafted .dir files.
Which versions of Adobe Shockwave Player are affected by CVE-2010-1280?
CVE-2010-1280 affects Adobe Shockwave Player versions prior to 11.5.7.609.
Can CVE-2010-1280 affect macOS or Windows operating systems?
CVE-2010-1280 primarily affects systems running vulnerable versions of Adobe Shockwave Player, regardless of the underlying operating system.