Adobe Flash Player and AIR Image Processing Use After Free Remote Code Execution Vulnerability
BID:40780
Info
Adobe Flash Player and AIR Image Processing Use After Free Remote Code Execution Vulnerability
| Bugtraq ID: | 40780 |
| Class: | Unknown |
| CVE: |
CVE-2010-2164 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 10 2010 12:00AM |
| Updated: | Jun 20 2013 09:39AM |
| Credit: | An anonymous researcher working with iDefense. |
| Vulnerable: |
SuSE SUSE Linux Enterprise Desktop 11 SP1 SuSE SUSE Linux Enterprise Desktop 11 SuSE SUSE Linux Enterprise Desktop 10 SP3 SuSE SUSE Linux Enterprise 11 SP1 SuSE SUSE Linux Enterprise 10 SP3 S.u.S.E. openSUSE 11.2 S.u.S.E. openSUSE 11.1 S.u.S.E. openSUSE 11.0 RedHat Enterprise Linux WS Extras 4 RedHat Enterprise Linux WS Extras 3 RedHat Enterprise Linux Extras 4 RedHat Enterprise Linux Extras 3 RedHat Enterprise Linux ES Extras 4 RedHat Enterprise Linux ES Extras 3 RedHat Enterprise Linux AS Extras 4 RedHat Enterprise Linux AS Extras 3 RedHat Desktop Extras 4 RedHat Desktop Extras 3 Red Hat Enterprise Linux Supplementary 5 server Red Hat Enterprise Linux Desktop Supplementary 5 client Pardus Linux 2009 0 Macromedia Flash 5.0 HP Systems Insight Manager C.05.00.02 HP Systems Insight Manager C 05.00.02 HP Systems Insight Manager 6.0.0.96 HP Systems Insight Manager 5.3 Update 1 HP Systems Insight Manager 5.3 HP Systems Insight Manager 5.2 SP2 HP Systems Insight Manager 5.1 SP1 HP Systems Insight Manager 5.0 SP6 HP Systems Insight Manager 5.0 SP5 HP Systems Insight Manager 5.0 SP3 HP Systems Insight Manager 5.0 SP2 HP Systems Insight Manager 5.0 SP1 HP Systems Insight Manager 5.0 Gentoo Linux Apple Mac OS X Server 10.6.4 Apple Mac OS X Server 10.6.3 Apple Mac OS X Server 10.6.2 Apple Mac OS X Server 10.6.1 Apple Mac OS X Server 10.5.8 Apple Mac OS X Server 10.5.7 Apple Mac OS X Server 10.5.6 Apple Mac OS X Server 10.5.5 Apple Mac OS X Server 10.5.4 Apple Mac OS X Server 10.5.3 Apple Mac OS X Server 10.5.2 Apple Mac OS X Server 10.5.1 Apple Mac OS X Server 10.5 Apple Mac OS X Server 10.6 Apple Mac OS X Server 10.5 Apple Mac OS X 10.6.4 Apple Mac OS X 10.6.3 Apple Mac OS X 10.6.2 Apple Mac OS X 10.6.1 Apple Mac OS X 10.5.8 Apple Mac OS X 10.5.7 Apple Mac OS X 10.5.6 Apple Mac OS X 10.5.5 Apple Mac OS X 10.5.4 Apple Mac OS X 10.5.3 Apple Mac OS X 10.5.2 Apple Mac OS X 10.5.1 Apple Mac OS X 10.5 Apple Mac OS X 10.6 Apple Mac OS X 10.5 Adobe Flex 4.0 Adobe Flex 3.0 Adobe Flash Player 10.1.51 .66 Adobe Flash Player 10.0.45 2 Adobe Flash Player 10.0.45 2 Adobe Flash Player 10.0.32 18 Adobe Flash Player 10.0.22 .87 Adobe Flash Player 10.0.15 .3 Adobe Flash Player 10.0.12 .36 Adobe Flash Player 10.0.12 .35 Adobe Flash Player 9.0.262 Adobe Flash Player 9.0.246 0 Adobe Flash Player 9.0.152 .0 Adobe Flash Player 9.0.151 .0 Adobe Flash Player 9.0.124 .0 Adobe Flash Player 9.0.48.0 Adobe Flash Player 9.0.47.0 Adobe Flash Player 9.0.45.0 Adobe Flash Player 9.0.31.0 Adobe Flash Player 9.0.28.0 Adobe Flash Player 9.0.260.0 Adobe Flash Player 9.0.246.0 Adobe Flash Player 9.0.159.0 Adobe Flash Player 9.0.115.0 Adobe Flash Player 9 Adobe Flash Player 8.0.35.0 Adobe Flash Player 8.0.34.0 Adobe Flash Player 8 Adobe Flash Player 7.0.70.0 Adobe Flash Player 7.0.69.0 Adobe Flash Player 7 Adobe Flash Player 10.1 Release Candida Adobe Flash Player 10.0.42.34 Adobe Flash Player 10.0.32.18 Adobe Flash Player 10 Adobe Flash CS5 Professional 0 Adobe Flash CS4 Professional 0 Adobe Flash CS3 Professional 0 Adobe AIR 1.5.3 .9130 Adobe AIR 1.5.3 .9120 Adobe AIR 1.5.3 Adobe AIR 1.5.2 Adobe AIR 1.5.1 Adobe AIR 1.5 Adobe AIR 1.1 Adobe AIR 1.01 Adobe AIR 1.0 |
| Not Vulnerable: |
HP Systems Insight Manager 6.1 Apple Mac OS X Server 10.6.5 Adobe Flash Player 10.1.53 .64 Adobe Flash Player 9.0.277.0 Adobe AIR 2.0.2.12610 |
Discussion
Adobe Flash Player and AIR Image Processing Use After Free Remote Code Execution Vulnerability
Adobe Flash Player and AIR is prone to a remote code-execution vulnerability due to a use-after-free condition.
An attacker can exploit this issue by enticing an unsuspecting victim to view a malicious webpage.
Successful exploits will allow attackers to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in a denial-of-service condition.
NOTE: This issue was previously covered in BID 40759 (Adobe Flash Player 10.0.45.2 and AIR 1.5.3.9130 Multiple Remote Vulnerabilities) but has been assigned its own record to better document it.
Adobe Flash Player and AIR is prone to a remote code-execution vulnerability due to a use-after-free condition.
An attacker can exploit this issue by enticing an unsuspecting victim to view a malicious webpage.
Successful exploits will allow attackers to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in a denial-of-service condition.
NOTE: This issue was previously covered in BID 40759 (Adobe Flash Player 10.0.45.2 and AIR 1.5.3.9130 Multiple Remote Vulnerabilities) but has been assigned its own record to better document it.
Exploit / POC
Adobe Flash Player and AIR Image Processing Use After Free Remote Code Execution Vulnerability
Currently we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Adobe Flash Player and AIR Image Processing Use After Free Remote Code Execution Vulnerability
Solution:
Updates are available. Please see the references for more information.
Apple Mac OS X Server 10.6
S.u.S.E. openSUSE 11.0
Apple Mac OS X 10.6
S.u.S.E. openSUSE 11.1
Apple Mac OS X Server 10.6.1
Apple Mac OS X 10.6.1
Apple Mac OS X Server 10.6.2
Apple Mac OS X 10.6.3
Apple Mac OS X 10.6.4
Apple Mac OS X Server 10.6.4
Solution:
Updates are available. Please see the references for more information.
Apple Mac OS X Server 10.6
-
Apple MacOSXServUpdCombo10.6.5.dmg
For Mac OS X Server v10.6 - v10.6.3
http://www.apple.com/support/downloads/
S.u.S.E. openSUSE 11.0
-
SuSE flash-player-10.1.53.64-1.1.i586.rpm
http://download.opensuse.org/update/11.0/rpm/i586/flash-player-10.1.53 .64-1.1.i586.rpm
Apple Mac OS X 10.6
-
Apple MacOSXUpdCombo10.6.5.dmg
For Mac OS X v10.6 - v10.6.3
http://www.apple.com/support/downloads/
S.u.S.E. openSUSE 11.1
-
SuSE flash-player-10.1.53.64-1.1.1.i586.rpm
http://download.opensuse.org/update/11.2/rpm/i586/flash-player-10.1.53 .64-1.1.1.i586.rpm
Apple Mac OS X Server 10.6.1
-
Apple MacOSXServUpdCombo10.6.5.dmg
For Mac OS X Server v10.6 - v10.6.3
http://www.apple.com/support/downloads/
Apple Mac OS X 10.6.1
-
Apple MacOSXUpdCombo10.6.5.dmg
For Mac OS X v10.6 - v10.6.3
http://www.apple.com/support/downloads/
Apple Mac OS X Server 10.6.2
-
Apple MacOSXServUpdCombo10.6.5.dmg
For Mac OS X Server v10.6 - v10.6.3
http://www.apple.com/support/downloads/
Apple Mac OS X 10.6.3
-
Apple MacOSXUpdCombo10.6.5.dmg
For Mac OS X v10.6 - v10.6.3
http://www.apple.com/support/downloads/
Apple Mac OS X 10.6.4
-
Apple MacOSXUpd10.6.5.dmg
For Mac OS X v10.6.4
http://www.apple.com/support/downloads/
Apple Mac OS X Server 10.6.4
-
Apple MacOSXServerUpd10.6.5.dmg
For Mac OS X Server v10.6.4
http://www.apple.com/support/downloads/
References
Adobe Flash Player and AIR Image Processing Use After Free Remote Code Execution Vulnerability
References:
References:
- Adobe AIR homepage (Adobe)
- Adobe Flash Homepage (Adobe)
- iDefense Security Advisory 06.10.10: Adobe Flash Player Use-After-Free Vulnerab (iDefense Labs
) - Adobe Flash Player Use-After-Free Vulnerability (iDefense Labs)
- APSB10-14 Security update available for Adobe Flash Player (Adobe)