HIGH
flash-plugin: multiple security flaws (APSB10-14)
Published Jun 15, 2010
9.3
HIGHCVSS 2.0
EPSS 6.08%
Description
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allow attackers to cause a denial of service (pointer memory corruption) or possibly execute arbitrary code via unspecified vectors.
Affected products
No data.
Configuration 1
OR
- 9.0.16
- 9.0.20
- 9.0.20.0
- 9.0.28
- 9.0.28.0
- 9.0.31
- 9.0.31.0
- 9.0.45.0
- 9.0.47.0
- 9.0.48.0
- 9.0.115.0
- 9.0.124.0
- 9.0.125.0
- 9.0.151.0
- 9.0.152.0
- 9.0.159.0
- 9.0.246.0
- 9.0.260.0
- 9.0.262.0
Configuration 2
OR
- ≤ 10.0.45.2
- 10.0.0.584
- 10.0.12.10
- 10.0.12.36
- 10.0.15.3
- 10.0.22.87
- 10.0.32.18
- 10.0.42.34
Configuration 3
OR
- 6.0.79
- 7.0
- 7.0.1
- 7.0.14.0
- 7.0.19.0
- 7.0.24.0
- 7.0.25
- 7.0.53.0
- 7.0.60.0
- 7.0.61.0
- 7.0.63
- 7.0.66.0
- 7.0.67.0
- 7.0.68.0
- 7.0.69.0
- 7.0.70.0
- 7.0.73.0
- 7.1
- 7.1.1
- 7.2
- 8.0
- 8.0.22.0
- 8.0.24.0
- 8.0.33.0
- 8.0.34.0
- 8.0.35.0
- 8.0.39.0
- 8.0.42.0
- 5.0
- 5.0.30.0
- 5.0.41.0
- 5.0.42.0
- 5.0.58.0
No data.
Extras for RHEL 3
flash-plugin-0:9.0.277.0-1.el3.with.oss
Fixed · RHSA-2010:0470
Extras for RHEL 4
flash-plugin-0:9.0.277.0-1.el4
Fixed · RHSA-2010:0470
Supplementary for Red Hat Enterprise Linux 5
flash-plugin-0:10.1-2.el5
Fixed · RHSA-2010:0464
| Product | Package | State | Advisory |
|---|---|---|---|
| Extras for RHEL 3 | flash-plugin-0:9.0.277.0-1.el3.with.oss | Fixed | RHSA-2010:0470 |
| Extras for RHEL 4 | flash-plugin-0:9.0.277.0-1.el4 | Fixed | RHSA-2010:0470 |
| Supplementary for Red Hat Enterprise Linux 5 | flash-plugin-0:10.1-2.el5 | Fixed | RHSA-2010:0464 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (32)
- http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751 vendor-advisoryx_refsource_HP
- http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html vendor-advisoryx_refsource_APPLE
- http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00000.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.html vendor-advisoryx_refsource_SUSE
- http://secunia.com/advisories/40144 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/40545 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/43026 third-party-advisoryx_refsource_SECUNIA
- http://security.gentoo.org/glsa/glsa-201101-09.xml vendor-advisoryx_refsource_GENTOO
- http://securitytracker.com/id?1024085 vdb-entryx_refsource_SECTRACK
- http://securitytracker.com/id?1024086 vdb-entryx_refsource_SECTRACK
- http://support.apple.com/kb/HT4435 x_refsource_CONFIRM
- http://www.adobe.com/support/security/bulletins/apsb10-14.html x_refsource_CONFIRMPatchVendor Advisory
- http://www.redhat.com/support/errata/RHSA-2010-0464.html vendor-advisoryx_refsource_REDHAT
- http://www.redhat.com/support/errata/RHSA-2010-0470.html vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/bid/40759 vdb-entryx_refsource_BID
- http://www.securityfocus.com/bid/40807 vdb-entryx_refsource_BID
- http://www.turbolinux.co.jp/security/2010/TLSA-2010-19j.txt vendor-advisoryx_refsource_TURBO
- http://www.us-cert.gov/cas/techalerts/TA10-162A.html third-party-advisoryx_refsource_CERTUS Government Resource
- http://www.vupen.com/english/advisories/2010/1421 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2010/1432 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2010/1434 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2010/1453 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2010/1482 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2010/1522 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2010/1793 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2011/0192 vdb-entryx_refsource_VUPEN
- https://access.redhat.com/security/cve/CVE-2010-2169 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=602847 Issue Tracking
- https://nvd.nist.gov/vuln/detail/CVE-2010-2169
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16225 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7276 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2010-2169
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner adobe
Published Jun 15, 2010
Updated Aug 7, 2024
Reserved Jun 7, 2010
Link CVE-2010-2169
CISA Vulnrichment
Updated n/a