CVE-2010-1283: High severity Adobe Shockwave Player vulnerability
Published May 13, 2010
·Updated
Adobe Shockwave Player before 11.5.7.609 does not properly parse 3D objects in .dir (aka Director) files, which allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a modified field in a 0xFFFFFF49 record.
Affected Software
6 affected components
Adobe Shockwave Player<11.5.7.609
macOS
Microsoft Windows
All of the following
Adobe Shockwave Player<11.5.7.609
Any of the following
macOS
Microsoft Windows
Remediation
Event History
May 13, 2010
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Data Sourced
05:30 PM
DescriptionSeverityWeaknessAffected Software
Data Sourced
via NVD·05:30 PM
RemedyDescriptionSeverityWeaknessAffected Software
May 23, 58294
Event
02:52 AM
Frequently Asked Questions
1
What is the severity of CVE-2010-1283?
CVE-2010-1283 has a high severity rating due to its potential for remote code execution and denial of service.
2
How do I fix CVE-2010-1283?
To fix CVE-2010-1283, update Adobe Shockwave Player to version 11.5.7.609 or later.
3
What systems are affected by CVE-2010-1283?
CVE-2010-1283 affects Adobe Shockwave Player versions prior to 11.5.7.609 on any operating system.
4
What type of vulnerability is CVE-2010-1283?
CVE-2010-1283 is a vulnerability that allows for remote code execution and heap memory corruption.
5
Can CVE-2010-1283 cause denial of service?
Yes, CVE-2010-1283 can cause a denial of service due to heap memory corruption.