Security Advisory

CVE-2009-4003

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2010-01-21 19:00:00
Last updated 2024-08-07 06:45:50
Assigner flexera
CVSS score not scored
State PUBLISHED

Description

Multiple integer overflows in Adobe Shockwave Player before 11.5.6.606 allow remote attackers to execute arbitrary code via (1) an unspecified block type in a Shockwave file, leading to a heap-based buffer overflow; and might allow remote attackers to execute arbitrary code via (2) an unspecified 3D block in a Shockwave file, leading to memory corruption; or (3) a crafted 3D model in a Shockwave file, leading to heap memory corruption.