exploit the possibilities
Showing 1 - 1 of 1 RSS Feed

Files

Zero Day Initiative Advisory 10-162
Posted Aug 26, 2010
Authored by Tipping Point | Site zerodayinitiative.com

Zero Day Initiative Advisory 10-162 - This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of the Adobe Shockwave Player. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of the rcsL RIFF chunk within director files of extension DIR or DCR. While parsing this undocumented structure, the application blindly trusts an offset value and uses it while operating on heap memory. An attacker can abuse this to corrupt a function pointer which can lead to arbitrary code execution under the context of the user running the web browser.

tags | advisory, remote, web, arbitrary, code execution
advisories | CVE-2010-2873
MD5 | d3eccaba4dc4136b3e88d6daadb7a545
Page 1 of 1
Back1Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Advanced Hackers Are Infecting IT Providers To Get At Customers
Posted Sep 19, 2019

tags | headline, hacker, malware, backdoor
Iowa Officials Claim Confusion Over Scope In Pen-Test Arrest
Posted Sep 19, 2019

tags | headline, hacker, government
Smart TVs, Subscription Services Leak Data To Facebook, Google
Posted Sep 19, 2019

tags | headline, privacy, google, spyware, facebook
Hotel Websites Infected With Skimmer Via Supply Chain Attack
Posted Sep 19, 2019

tags | headline, bank, cybercrime, fraud
Medical Records For 24.3 Million Left Exposed
Posted Sep 18, 2019

tags | headline, privacy, usa, data loss, fraud
New Algorithms Aim To Stamp Out Abuse On Twitter
Posted Sep 18, 2019

tags | headline, fraud, twitter
Poor Protocol Design For IoT Devices Fueling DDoS
Posted Sep 18, 2019

tags | headline, denial of service, flaw
Novaestrat Exec Arrested After Ecuadorian Data Leak
Posted Sep 18, 2019

tags | headline, government, privacy, data loss
Alleged JPMorgan Hacker Set To Plead Guilty
Posted Sep 17, 2019

tags | headline, hacker, bank
The Air Force Will Let Hackers Try To Hijack An Orbiting Satellite
Posted Sep 17, 2019

tags | headline, hacker, usa, conference, military
View More News →
packet storm

© 2019 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close