Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2cpw-8m4m-xr55

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Adobe Shockwave Player before 11.5.8.612 does not properly validate an offset value in the pami RIFF chunk in a Director movie, which allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a crafted movie.

Adobe Shockwave Player before 11.5.8.612 does not properly validate an offset value in the pami RIFF chunk in a Director movie, which allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a crafted movie.

EPSS

Процентиль: 93%
0.11046
Средний

Дефекты

CWE-20

Связанные уязвимости

nvd
почти 15 лет назад

Adobe Shockwave Player before 11.5.8.612 does not properly validate an offset value in the pami RIFF chunk in a Director movie, which allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a crafted movie.

EPSS

Процентиль: 93%
0.11046
Средний

Дефекты

CWE-20