CVE-2010-1282: Medium severity Adobe Shockwave Player vulnerability
Published May 13, 2010
·Updated
Adobe Shockwave Player before 11.5.7.609 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a crafted ATOM size in a .dir (aka Director) file.
Affected Software
6 affected components
Adobe Shockwave Player<11.5.7.609
macOS
Microsoft Windows
All of the following
Adobe Shockwave Player<11.5.7.609
Any of the following
macOS
Microsoft Windows
Remediation
Event History
May 13, 2010
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Data Sourced
05:30 PM
DescriptionSeverityWeaknessAffected Software
Data Sourced
via NVD·05:30 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2010-1282?
CVE-2010-1282 has a moderate severity level as it can lead to denial of service due to excessive CPU consumption.
2
How does CVE-2010-1282 impact users?
CVE-2010-1282 can result in an infinite loop that significantly affects system performance and usability.
3
What versions of Adobe Shockwave Player are affected by CVE-2010-1282?
CVE-2010-1282 affects Adobe Shockwave Player versions prior to 11.5.7.609.
4
How can I mitigate CVE-2010-1282?
To mitigate CVE-2010-1282, upgrade Adobe Shockwave Player to version 11.5.7.609 or later.
5
Is CVE-2010-1282 relevant to operating systems like macOS or Windows?
CVE-2010-1282 specifically affects Adobe Shockwave Player and is not directly related to vulnerabilities in macOS or Windows systems.