Release DateJun 16, 2010 |
Severityhigh |
ImpactSystem compromise |
DescriptionThis indicates a possible attack against a remote-code-execution vulnerability in Adobe's ActionScript Virtual Machine.The vulnerability is caused by an error when the vulnerable software handles a malicious Flash file. An attacker may exploit this by sending a malicious Flash file. |
Affected ProductsAdobe Flash Player 10.0.45.2 and earlier versions for Windows, Macintosh, Linux and SolarisAdobe AIR 1.5.3.9130 and earlier versions for Windows, Macintosh and Linux |
Recommended ActionsRefer to the vendor's advisory for updates:http://www.adobe.com/support/security/bulletins/apsb10-14.html |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2010-2160 |
Reference/shttp://www.adobe.com/support/security/bulletins/apsb10-14.html |