Adobe Flash Player CVE-2010-2884 Unspecified Remote Code Execution Vulnerability
BID:43205
Info
Adobe Flash Player CVE-2010-2884 Unspecified Remote Code Execution Vulnerability
| Bugtraq ID: | 43205 |
| Class: | Unknown |
| CVE: |
CVE-2010-2884 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 13 2010 12:00AM |
| Updated: | Mar 19 2015 08:37AM |
| Credit: | Steven Adair of the Shadowserver Foundation |
| Vulnerable: |
SuSE SUSE Linux Enterprise Desktop 11 SP1 SuSE SUSE Linux Enterprise Desktop 11 SuSE SUSE Linux Enterprise Desktop 10 SP3 SuSE SUSE Linux Enterprise 11 SP1 SuSE SUSE Linux Enterprise 11 SuSE SUSE Linux Enterprise 10 SP3 SuSE openSUSE 11.3 SuSE Moblin 2.1 SuSE Moblin 2.0 Sun Solaris 11 Express Sun Solaris 10_x86 Sun Solaris 10_sparc S.u.S.E. openSUSE 11.2 S.u.S.E. openSUSE 11.1 RedHat Enterprise Linux WS Extras 4 RedHat Enterprise Linux WS Extras 3 RedHat Enterprise Linux Extras 4 RedHat Enterprise Linux Extras 3 RedHat Enterprise Linux ES Extras 4 RedHat Enterprise Linux ES Extras 3 RedHat Enterprise Linux AS Extras 4 RedHat Enterprise Linux AS Extras 3 RedHat Desktop Extras 4 RedHat Desktop Extras 3 Red Hat Enterprise Linux Supplementary 5 server Red Hat Enterprise Linux Desktop Supplementary 5 client Google Chrome 6.0.472 55 Google Chrome 6.0.472.59 Google Chrome 6.0.472.53 Google Chrome 6.0.398.0 Google Chrome 6.0.397.0 Google Chrome 5.0.396.0 Google Chrome 5.0.395.0 Google Chrome 5.0.394.0 Google Chrome 5.0.393.0 Google Chrome 5.0.392.0 Google Chrome 5.0.391.0 Google Chrome 5.0.390.0 Google Chrome 5.0.387.0 Google Chrome 5.0.386.0 Google Chrome 5.0.385.0 Google Chrome 5.0.384.0 Google Chrome 5.0.383.0 Google Chrome 5.0.382.3 Google Chrome 5.0.382.0 Google Chrome 5.0.381.0 Google Chrome 5.0.380.0 Google Chrome 5.0.379.0 Google Chrome 5.0.378.0 Google Chrome 5.0.376.0 Gentoo Linux Apple Mac OS X Server 10.6.4 Apple Mac OS X Server 10.6.3 Apple Mac OS X Server 10.6.2 Apple Mac OS X Server 10.6.1 Apple Mac OS X Server 10.5.8 Apple Mac OS X Server 10.5.7 Apple Mac OS X Server 10.5.6 Apple Mac OS X Server 10.5.5 Apple Mac OS X Server 10.5.4 Apple Mac OS X Server 10.5.3 Apple Mac OS X Server 10.5.2 Apple Mac OS X Server 10.5.1 Apple Mac OS X Server 10.5 Apple Mac OS X Server 10.6 Apple Mac OS X Server 10.5 Apple Mac OS X 10.6.4 Apple Mac OS X 10.6.3 Apple Mac OS X 10.6.2 Apple Mac OS X 10.6.1 Apple Mac OS X 10.5.8 Apple Mac OS X 10.5.7 Apple Mac OS X 10.5.6 Apple Mac OS X 10.5.5 Apple Mac OS X 10.5.4 Apple Mac OS X 10.5.3 Apple Mac OS X 10.5.2 Apple Mac OS X 10.5.1 Apple Mac OS X 10.5 Apple Mac OS X 10.6 Apple Mac OS X 10.5 Adobe Reader 9.3.4 Adobe Reader 9.3.3 Adobe Reader 9.3.2 Adobe Reader 9.3.1 Adobe Reader 9.1.3 Adobe Reader 9.1.2 Adobe Reader 9.1.1 Adobe Reader 8.2.4 Adobe Reader 8.2.3 Adobe Reader 8.2.2 Adobe Reader 8.2.1 Adobe Reader 8.1.7 Adobe Reader 8.1.6 Adobe Reader 8.1.5 Adobe Reader 8.1.4 Adobe Reader 8.1.3 Adobe Reader 8.1.2 Adobe Reader 8.1.1 Adobe Reader 7.1.4 Adobe Reader 7.1.3 Adobe Reader 7.1.2 Adobe Reader 7.1.1 Adobe Reader 7.0.9 Adobe Reader 7.0.8 Adobe Reader 7.0.7 Adobe Reader 7.0.6 Adobe Reader 7.0.5 Adobe Reader 7.0.4 Adobe Reader 7.0.3 Adobe Reader 7.0.2 Adobe Reader 7.0.1 Adobe Reader 7.0 Adobe Reader 9.3 Adobe Reader 9.2 Adobe Reader 9.1 Adobe Reader 9 Adobe Reader 8.2 Adobe Reader 8.1.2 Security Updat Adobe Reader 8.1 Adobe Reader 8.0 Adobe Reader 7.1 Adobe Flash Player 10.1.53 .64 Adobe Flash Player 10.1.51 .66 Adobe Flash Player 10.0.45 2 Adobe Flash Player 10.0.45 2 Adobe Flash Player 10.0.32 18 Adobe Flash Player 10.0.22 .87 Adobe Flash Player 10.0.15 .3 Adobe Flash Player 10.0.12 .36 Adobe Flash Player 10.0.12 .35 Adobe Flash Player 10.1.92.10 Adobe Flash Player 10.1.82.76 Adobe Flash Player 10.0.42.34 Adobe Flash Player 10.0.32.18 Adobe Flash Player 10 Adobe AIR 2.0.3 Adobe AIR 1.5.3 .9130 Adobe AIR 1.5.3 .9120 Adobe AIR 1.5.3 Adobe AIR 1.5.2 Adobe AIR 1.5.1 Adobe AIR 2.0.2.12610 Adobe AIR 1.5 Adobe Acrobat Standard 9.3.4 Adobe Acrobat Standard 9.3.3 Adobe Acrobat Standard 9.3.2 Adobe Acrobat Standard 9.3.1 Adobe Acrobat Standard 9.1.3 Adobe Acrobat Standard 9.1.2 Adobe Acrobat Standard 8.2.4 Adobe Acrobat Standard 8.2.2 Adobe Acrobat Standard 8.2.1 Adobe Acrobat Standard 8.1.7 Adobe Acrobat Standard 8.1.6 Adobe Acrobat Standard 8.1.4 Adobe Acrobat Standard 8.1.3 Adobe Acrobat Standard 8.1.2 Adobe Acrobat Standard 8.1.1 Adobe Acrobat Standard 7.1.4 Adobe Acrobat Standard 7.1.3 Adobe Acrobat Standard 7.1.1 Adobe Acrobat Standard 7.0.8 Adobe Acrobat Standard 7.0.7 Adobe Acrobat Standard 7.0.6 Adobe Acrobat Standard 7.0.5 Adobe Acrobat Standard 7.0.4 Adobe Acrobat Standard 7.0.3 Adobe Acrobat Standard 7.0.2 Adobe Acrobat Standard 7.0.1 Adobe Acrobat Standard 7.0 Adobe Acrobat Standard 9.3 Adobe Acrobat Standard 9.2 Adobe Acrobat Standard 9.1 Adobe Acrobat Standard 9 Adobe Acrobat Standard 8.2 Adobe Acrobat Standard 8.1 Adobe Acrobat Standard 8.0 Adobe Acrobat Standard 7.1 Adobe Acrobat Professional 9.3.4 Adobe Acrobat Professional 9.3.3 Adobe Acrobat Professional 9.3.2 Adobe Acrobat Professional 9.3.1 Adobe Acrobat Professional 9.1.3 Adobe Acrobat Professional 9.1.2 Adobe Acrobat Professional 8.2.4 Adobe Acrobat Professional 8.2.2 Adobe Acrobat Professional 8.2.1 Adobe Acrobat Professional 8.1.7 Adobe Acrobat Professional 8.1.6 Adobe Acrobat Professional 8.1.4 Adobe Acrobat Professional 8.1.3 Adobe Acrobat Professional 8.1.2 Adobe Acrobat Professional 8.1.1 Adobe Acrobat Professional 7.1.4 Adobe Acrobat Professional 7.1.3 Adobe Acrobat Professional 7.1.1 Adobe Acrobat Professional 7.0.9 Adobe Acrobat Professional 7.0.8 Adobe Acrobat Professional 7.0.7 Adobe Acrobat Professional 7.0.6 Adobe Acrobat Professional 7.0.5 Adobe Acrobat Professional 7.0.4 Adobe Acrobat Professional 7.0.3 Adobe Acrobat Professional 7.0.2 Adobe Acrobat Professional 7.0.1 Adobe Acrobat Professional 7.0 Adobe Acrobat Professional 9.3 Adobe Acrobat Professional 9.2 Adobe Acrobat Professional 9.1 Adobe Acrobat Professional 9 Adobe Acrobat Professional 8.2 Adobe Acrobat Professional 8.1.2 Security Updat Adobe Acrobat Professional 8.1 Adobe Acrobat Professional 8.0 Adobe Acrobat Professional 7.1 Adobe Acrobat 9.3.3 Adobe Acrobat 9.3.2 Adobe Acrobat 9.3.1 Adobe Acrobat 9.1.1 Adobe Acrobat 8.2.4 Adobe Acrobat 8.2.4 Adobe Acrobat 8.2.3 Adobe Acrobat 8.2.2 Adobe Acrobat 8.1.8 Adobe Acrobat 7.1.2 Adobe Acrobat 7.0.9 Adobe Acrobat 7.0.3 Adobe Acrobat 7.0.2 Adobe Acrobat 7.0.1 Adobe Acrobat 7.0 Adobe Acrobat 9.3 Adobe Acrobat 9.2 |
| Not Vulnerable: |
SuSE SUSE Linux Enterprise Desktop 11 SP1 SuSE SUSE Linux Enterprise Desktop 11 SuSE SUSE Linux Enterprise Desktop 10 SP3 SuSE openSUSE 11.3 S.u.S.E. openSUSE 11.2 S.u.S.E. openSUSE 11.1 Google Chrome 6.0.472.62 Apple Mac OS X Server 10.6.5 Adobe Reader 8.2.5 Adobe Reader 9.4 Adobe Flash Player 10.1.95.1 Adobe Flash Player 10.1.85.3 Adobe AIR 2.0.4 Adobe Acrobat Standard 8.2.5 Adobe Acrobat Standard 9.4 Adobe Acrobat Professional 8.2.5 Adobe Acrobat Professional 9.4 Adobe Acrobat 8.2.5 Adobe Acrobat 9.4 |
Discussion
Adobe Flash Player CVE-2010-2884 Unspecified Remote Code Execution Vulnerability
Adobe Flash Player is prone to an unspecified remote code-execution vulnerability.
Successful exploits will allow an attacker to run arbitrary code in the context of the user running the application. Failed attacks may cause denial-of-service conditions.
Adobe Flash Player 10.1.82.76 and prior are vulnerable.
Adobe Flash Player is prone to an unspecified remote code-execution vulnerability.
Successful exploits will allow an attacker to run arbitrary code in the context of the user running the application. Failed attacks may cause denial-of-service conditions.
Adobe Flash Player 10.1.82.76 and prior are vulnerable.
Exploit / POC
Adobe Flash Player CVE-2010-2884 Unspecified Remote Code Execution Vulnerability
This issue is actively being exploited in the wild.
This issue is actively being exploited in the wild.
Solution / Fix
Adobe Flash Player CVE-2010-2884 Unspecified Remote Code Execution Vulnerability
Solution:
Updates are available. Please see the references for more information.
Apple Mac OS X 10.6
S.u.S.E. openSUSE 11.1
Apple Mac OS X 10.6.1
Apple Mac OS X 10.6.3
Solution:
Updates are available. Please see the references for more information.
Apple Mac OS X 10.6
-
Apple MacOSXUpdCombo10.6.5.dmg
For Mac OS X v10.6 - v10.6.3
http://www.apple.com/support/downloads/
S.u.S.E. openSUSE 11.1
-
SuSE flash-player-10.1.85.3-0.1.1.i586.rpm
http://download.opensuse.org/update/11.3/rpm/i586/flash-player-10.1.85 .3-0.1.1.i586.rpm
Apple Mac OS X 10.6.1
-
Apple MacOSXUpdCombo10.6.5.dmg
For Mac OS X v10.6 - v10.6.3
http://www.apple.com/support/downloads/
Apple Mac OS X 10.6.3
-
Apple MacOSXUpdCombo10.6.5.dmg
For Mac OS X v10.6 - v10.6.3
http://www.apple.com/support/downloads/
References
Adobe Flash Player CVE-2010-2884 Unspecified Remote Code Execution Vulnerability
References:
References:
- Adobe Flash Homepage (Adobe)
- Adobe Homepage (Adobe)
- APSB10-21 Prenotification Security Advisory for Adobe Reader and Acrobat (Adobe)
- CVE-2010-2884 Vulnerability in Adobe Flash Player (Oracle)
- Google Chrome has been updated to 6.0.472.62 for Windows, Linux and Mac (Google)
- Security Advisory for Flash Player (Adobe)
- Vulnerability Note VU#275289 Adobe Flash unspecified code execution vulnerabilit (US-CERT)
- APSB10-21 Security Advisory for Adobe Reader and Acrobat (Adobe)
- APSB10-22 Security update available for Adobe Flash Player (Adobe)