Adobe Products authplay.dll Remote Code Execution Vulnerability

  Severity: CRITICAL
  CVE Identifier: CVE-2010-1297
  Advisory Date: JUN 05, 2010

  DESCRIPTION

Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64; Adobe AIR before 2.0.2.12610; and Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted SWF content, related to authplay.dll and the ActionScript Virtual Machine 2 (AVM2) newfunction instruction, as exploited in the wild in June 2010.

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1004202
  Trend Micro Deep Security DPI Rule Name: 1004202 - Adobe Products authplay.dll Remote Code Execution Vulnerability

  AFFECTED SOFTWARE AND VERSION

  • Adobe Acrobat 9.0
  • Adobe Acrobat 9.1
  • Adobe Acrobat 9.1.1
  • Adobe Acrobat 9.1.2
  • Adobe Acrobat 9.1.3
  • Adobe Acrobat 9.2
  • Adobe Acrobat 9.3
  • Adobe Acrobat 9.3.1
  • Adobe Acrobat 9.3.2
  • Adobe Acrobat Reader 9.0
  • Adobe Acrobat Reader 9.1
  • Adobe Acrobat Reader 9.1.1
  • Adobe Acrobat Reader 9.1.2
  • Adobe Acrobat Reader 9.1.3
  • Adobe Acrobat Reader 9.2
  • Adobe Acrobat Reader 9.3
  • Adobe Acrobat Reader 9.3.1
  • Adobe Acrobat Reader 9.3.2
  • Adobe Flash Player 10.0.0.584
  • Adobe Flash Player 10.0.12.10
  • Adobe Flash Player 10.0.12.36
  • Adobe Flash Player 10.0.15.3
  • Adobe Flash Player 10.0.22.87
  • Adobe Flash Player 10.0.32.18
  • Adobe Flash Player 10.0.42.34
  • Adobe Flash Player 10.0.45.2
  • Adobe Flash Player 9.0.112.0
  • Adobe Flash Player 9.0.114.0
  • Adobe Flash Player 9.0.115.0
  • Adobe Flash Player 9.0.124.0
  • Adobe Flash Player 9.0.125.0
  • Adobe Flash Player 9.0.151.0
  • Adobe Flash Player 9.0.152.0
  • Adobe Flash Player 9.0.159.0
  • Adobe Flash Player 9.0.16
  • Adobe Flash Player 9.0.18d60
  • Adobe Flash Player 9.0.20
  • Adobe Flash Player 9.0.20.0
  • Adobe Flash Player 9.0.246.0
  • Adobe Flash Player 9.0.260.0
  • Adobe Flash Player 9.0.262.0
  • Adobe Flash Player 9.0.28
  • Adobe Flash Player 9.0.28.0
  • Adobe Flash Player 9.0.31
  • Adobe Flash Player 9.0.31.0
  • Adobe Flash Player 9.0.45.0
  • Adobe Flash Player 9.0.47.0
  • Adobe Flash Player 9.0.48.0

Featured Stories