CVE-2010-2166: Buffer Overflow
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-2160, CVE-2010-2165, CVE-2010-2171, CVE-2010-2175, CVE-2010-2176, CVE-2010-2177, CVE-2010-2178, CVE-2010-2180, CVE-2010-2182, CVE-2010-2184, CVE-2010-2187, and CVE-2010-2188.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2166?
CVE-2010-2166 has been assigned a medium severity rating due to potential denial of service and the possibility of arbitrary code execution.
How do I fix CVE-2010-2166?
To fix CVE-2010-2166, update Adobe Flash Player and Adobe AIR to the latest version as specified in the vendor's security bulletins.
What versions are vulnerable to CVE-2010-2166?
Adobe Flash Player versions before 9.0.277.0 and 10.x before 10.1.53.64, as well as Adobe AIR versions before 2.0.2.12610, are vulnerable to CVE-2010-2166.
What types of attacks can exploit CVE-2010-2166?
CVE-2010-2166 can be exploited through memory corruption leading to denial of service or potential arbitrary code execution.
Is there a workaround for CVE-2010-2166?
Currently, the most effective workaround for CVE-2010-2166 is to upgrade to patched versions of Adobe Flash Player or Adobe AIR.