Multiple integer overflows in Adobe Shockwave Player prior to 11.5.6.606 allow remote malicious users to execute arbitrary code via (1) an unspecified block type in a Shockwave file, leading to a heap-based buffer overflow; and might allow remote malicious users to execute arbitrary code via (2) an unspecified 3D block in a Shockwave file, leading to memory corruption; or (3) a crafted 3D model in a Shockwave file, leading to heap memory corruption.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
adobe shockwave player 5.0 |
||
adobe shockwave player 6.0 |
||
adobe shockwave player |
||
adobe shockwave player 1.0 |
||
adobe shockwave player 10.1.0.11 |
||
adobe shockwave player 11.0.0.456 |
||
adobe shockwave player 9 |
||
adobe shockwave player 4.0 |
||
adobe shockwave player 11.5.1.601 |
||
adobe shockwave player 8.0 |
||
adobe shockwave player 11.5.0.596 |
||
adobe shockwave player 2.0 |
||
adobe shockwave player 3.0 |
||
adobe shockwave player 11.5.0.595 |
||
adobe shockwave player 8.5.1 |