imPC@ndo IT

Tracker / CVE-2011-0609

CVE-2011-0609

Exploited High 7.8

Unspecified vulnerability in Adobe Flash Player 10.2.154.13 and earlier on Windows, Mac OS X, Linux, and Solaris; 10.1.106.16 and earlier on Android; Adobe AIR 2.5.1 and earlier; and Authplay.dll (aka AuthPlayLib.bundle) in Adobe Reader and Acrobat 9.x through 9.4.2 and 10.x through 10.0.1 on Windows and Mac OS X, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted Flash content, as demonstrated by a .swf file embedded in an Excel spreadsheet, and as exploited in the wild in March 2011.

Affected products and versions

adobe acrobat
adobe acrobat · 9.0 → 9.4.2
adobe acrobat_reader
adobe acrobat_reader · 9.0 → 9.4.2
adobe air · … → 2.5.1
adobe flash_player · … → 10.1.106.16
adobe flash_player · … → 10.2.154.13
google chrome · … → 10.0.648.134
opensuse opensuse
suse linux_enterprise

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References