← Back

CVE-2010-0128

nvd nist
Published: May 13, 2010Modified: Apr 29, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

Integer signedness error in dirapi.dll in Adobe Shockwave Player before 11.5.7.609 and Adobe Director before 11.5.7.609 allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted .dir file that triggers an invalid read operation.

Affected (2)

2 products
Director
Shockwave Player
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 11.5.7.609
Configuration B
1 vulnerable · 2 platform
Vulnerable SoftwareAffected Versions
Up to 11.5.6.606
Running on/withPlatform Versions
Apple
Macos
All versions
Microsoft
Windows
All versions

References (16)

Source: PSIRT-CNA@flexerasoftware.com
Broken LinkVendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Broken LinkVendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
PatchVendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Broken Link
Source: PSIRT-CNA@flexerasoftware.com
Broken LinkVDB Entry
Source: PSIRT-CNA@flexerasoftware.com
Broken LinkVDB Entry
Source: PSIRT-CNA@flexerasoftware.com
Broken LinkVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkVendor Advisory

Timeline

No history available yet.