Куда я попал?
SECURITM это SGRC система, ? автоматизирующая процессы в службах информационной безопасности. SECURITM помогает построить и управлять ИСПДн, КИИ, ГИС, СМИБ/СУИБ, банковскими системами защиты.
А еще SECURITM это место для обмена опытом и наработками для служб безопасности.

CVE-2010-3654

PUBLISHED 07.08.2024

CNA: adobe

Обновлено: 18.09.2017
Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows, Mac OS X, Linux, and Solaris and 10.1.95.1 on Android, and authplay.dll (aka AuthPlayLib.bundle or libauthplay.so.0.0.0) in Adobe Reader and Acrobat 9.x through 9.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted SWF content, as exploited in the wild in October 2010.

EPSS

Вероятность Severity Процентиль ? Дата расчёта
93.56% CRITICAL 99.84 23.05.2026

Exploits & Shellcodes

Идентификатор Тип Описание Дата публикации
EDB-17187 Exploit Adobe Flash Player < 10.1.53.64 - Action Script Type Confusion (ASLR + DEP Bypass) 19.04.2011
EDB-16667 Exploit Adobe Flash Player - 'Button' Arbitrary Code Execution (Metasploit) 01.11.2010

Доп. Информация

Product Status

n/a
Product: n/a
Vendor: n/a
Default status: Не определен
Версии:
Затронутые версии Статус
Наблюдалось в версии n/a affected
 

Ссылки

http://www.vupen.com/english/advisories/2011/0192
http://secunia.com/advisories/42183
http://contagiodump.blogspot.com/2010/10/potential-new-adobe-flash-player-zero.html
http://support.apple.com/kb/HT4435
http://secunia.com/advisories/42030
http://www.vupen.com/english/advisories/2011/0191
http://blogs.sun.com/security/entry/multiple_vulnerabilities_in_adobe_flash1
http://secunia.com/advisories/43025
http://www.vupen.com/english/advisories/2011/0344
http://secunia.com/advisories/43026
http://security.gentoo.org/glsa/glsa-201101-09.xml
http://www.vupen.com/english/advisories/2010/2918
http://www.vupen.com/english/advisories/2010/3111
http://secunia.com/advisories/41917
http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html
http://security.gentoo.org/glsa/glsa-201101-08.xml
http://www.redhat.com/support/errata/RHSA-2010-0834.html
http://lists.opensuse.org/opensuse-security-announce/2010-11/msg00002.html
http://www.securitytracker.com/id?1024660
http://secunia.com/advisories/42926
http://www.redhat.com/support/errata/RHSA-2010-0934.html
http://www.vupen.com/english/advisories/2010/2903
http://www.vupen.com/english/advisories/2011/0173
http://secunia.com/advisories/42401
http://www.adobe.com/support/security/bulletins/apsb10-26.html
http://www.kb.cert.org/vuls/id/298081
http://www.securitytracker.com/id?1024659
http://www.turbolinux.co.jp/security/2011/TLSA-2011-2j.txt
http://www.securityfocus.com/bid/44504
http://www.adobe.com/support/security/advisories/apsa10-05.html
http://www.adobe.com/support/security/bulletins/apsb10-28.html
http://lists.opensuse.org/opensuse-security-announce/2010-12/msg00001.html
http://securityreason.com/securityalert/8210
http://www.vupen.com/english/advisories/2010/2906
http://www.redhat.com/support/errata/RHSA-2010-0867.html
http://www.redhat.com/support/errata/RHSA-2010-0829.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13294

CVE Program Container

Обновлено: 07.08.2024
SSVC and KEV, plus CVSS and CWE if not provided by the CNA.

Ссылки

http://www.vupen.com/english/advisories/2011/0192
http://secunia.com/advisories/42183
http://contagiodump.blogspot.com/2010/10/potential-new-adobe-flash-player-zero.html
http://support.apple.com/kb/HT4435
http://secunia.com/advisories/42030
http://www.vupen.com/english/advisories/2011/0191
http://blogs.sun.com/security/entry/multiple_vulnerabilities_in_adobe_flash1
http://secunia.com/advisories/43025
http://www.vupen.com/english/advisories/2011/0344
http://secunia.com/advisories/43026
http://security.gentoo.org/glsa/glsa-201101-09.xml
http://www.vupen.com/english/advisories/2010/2918
http://www.vupen.com/english/advisories/2010/3111
http://secunia.com/advisories/41917
http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html
http://security.gentoo.org/glsa/glsa-201101-08.xml
http://www.redhat.com/support/errata/RHSA-2010-0834.html
http://lists.opensuse.org/opensuse-security-announce/2010-11/msg00002.html
http://www.securitytracker.com/id?1024660
http://secunia.com/advisories/42926
http://www.redhat.com/support/errata/RHSA-2010-0934.html
http://www.vupen.com/english/advisories/2010/2903
http://www.vupen.com/english/advisories/2011/0173
http://secunia.com/advisories/42401
http://www.adobe.com/support/security/bulletins/apsb10-26.html
http://www.kb.cert.org/vuls/id/298081
http://www.securitytracker.com/id?1024659
http://www.turbolinux.co.jp/security/2011/TLSA-2011-2j.txt
http://www.securityfocus.com/bid/44504
http://www.adobe.com/support/security/advisories/apsa10-05.html
http://www.adobe.com/support/security/bulletins/apsb10-28.html
http://lists.opensuse.org/opensuse-security-announce/2010-12/msg00001.html
http://securityreason.com/securityalert/8210
http://www.vupen.com/english/advisories/2010/2906
http://www.redhat.com/support/errata/RHSA-2010-0867.html
http://www.redhat.com/support/errata/RHSA-2010-0829.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13294

Мы используем cookie-файлы, чтобы получить статистику, которая помогает нам улучшить сервис для вас с целью персонализации сервисов и предложений. Вы может прочитать подробнее о cookie-файлах или изменить настройки браузера. Продолжая пользоваться сайтом, вы даёте согласие на использование ваших cookie-файлов и соглашаетесь с Политикой обработки персональных данных.