CVE-2010-1297: Adobe Flash Player Memory Corruption Vulnerability
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64; Adobe AIR before 2.0.2.12610; and Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted SWF content, related to authplay.dll and the ActionScript Virtual Machine 2 (AVM2) newfunction instruction, as exploited in the wild in June 2010.
Other sources
Adobe Flash Player contains a memory corruption vulnerability that allows remote attackers to execute code or cause denial-of-service (DoS).
— CISA
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Adobe Flash Player 9.xto a version that resolves this vulnerability.Fixed in 9.0.277.0 - Upgrade
Upgrade
Adobe Flash Player 10.xto a version that resolves this vulnerability.Fixed in 10.1.53.64 - Upgrade
Upgrade
Adobe AIRto a version that resolves this vulnerability.Fixed in 2.0.2.12610 - Upgrade
Upgrade
Adobe Reader/Acrobat 9.xto a version that resolves this vulnerability.Fixed in 9.3.3 - Upgrade
Upgrade
Adobe Reader/Acrobat 8.xto a version that resolves this vulnerability.Fixed in 8.2.3 - Compensating control
Disconnect the impacted product (Adobe Flash Player) from networks/endpoints if it is still in use, since the product is end-of-life.
Event History
Frequently Asked Questions
What is the severity of CVE-2010-1297?
CVE-2010-1297 has a critical severity rating due to its potential to allow remote code execution or denial of service.
How do I fix CVE-2010-1297?
To resolve CVE-2010-1297, update Adobe Flash Player, Adobe AIR, or Adobe Reader and Acrobat to the latest version.
What software is affected by CVE-2010-1297?
CVE-2010-1297 affects Adobe Flash Player versions before 9.0.277.0 and 10.x before 10.1.53.64, as well as Adobe AIR and Adobe Reader versions before 2.0.2.12610 and 9.x before 9.3.3.
Can CVE-2010-1297 be exploited remotely?
Yes, CVE-2010-1297 can be exploited remotely by attackers to execute arbitrary code.
Are there known workarounds for CVE-2010-1297?
The primary mitigation for CVE-2010-1297 is to upgrade affected software, as there are no effective workarounds available.