This application requires Javascript for optimal performance.

Adobe.Shockwave.Flash.DoS

Release Date

Feb 12, 2010

Severity

medium

Impact

Denial of Service: Remote attackers can crash vulnerable systems.

Description

This indicates an attack attempt to exploit a denial-of-service vulnerability
in Adobe Shockwave Flash. This vulnerability can be exploited via a crafted Flash file (SWF).

Affected Products

Adobe Flash Player 10.0.42.34 and earlier versions
Adobe AIR version 1.5.3.1920 and earlier versions

Recommended Actions

Upgrade to the latest version, available from the vendor's web site:
http://get.adobe.com/flashplayer/

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2010-0187

Reference/s

http://sebug.net/exploit/18967/
http://www.exploit-db.com/sploits/ie_crash.tar.gz
http://www.adobe.com/support/security/bulletins/apsb10-06.html
http://www.securityfocus.com/bid/38200 (BugTraq)

Reference: VID-18214