CVE-2010-3654: Buffer Overflow
Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows, Mac OS X, Linux, and Solaris and 10.1.95.1 on Android, and authplay.dll (aka AuthPlayLib.bundle or libauthplay.so.0.0.0) in Adobe Reader and Acrobat 9.x through 9.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted SWF content, as exploited in the wild in October 2010.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-3654?
CVE-2010-3654 has been classified as high severity due to its potential to allow remote attackers to execute arbitrary code.
How do I fix CVE-2010-3654?
To fix CVE-2010-3654, update Adobe Flash Player to versions 9.0.289.0 or later and Adobe Reader and Acrobat to version 9.5 or later.
What software is affected by CVE-2010-3654?
CVE-2010-3654 affects Adobe Flash Player versions before 9.0.289.0 and 10.x before 10.1.102.64, along with Adobe Reader and Acrobat versions 9.x up to 9.4.
What type of vulnerability is CVE-2010-3654?
CVE-2010-3654 is a code execution vulnerability that can be exploited by remote attackers.
Can CVE-2010-3654 be exploited through the web?
Yes, CVE-2010-3654 can be exploited through malicious flash content in web pages.