Release DateJan 20, 2010 |
Severitycritical |
ImpactSystem Compromise: Remote attackers can gain control of vulnerable systems. |
DescriptionThis indicates an attack attempt to exploit a remote code-execution vulnerability in Adobe Shockwave Player which could be exploited by opening a specially crafted ".dir" file. |
Affected ProductsShockwave Player 11.5.2.602 and earlier versions for Windows and Macintosh |
Recommended ActionsRefer to vendor's advisory for updates or patches:http://www.adobe.com/support/security/bulletins/apsb10-03.html |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2009-4003 |
Reference/shttp://www.adobe.com/support/security/bulletins/apsb10-03.htmlhttp://www.securityfocus.com/bid/37872 (BugTraq) |