Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-399x-jvm3-qgch

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IML32.dll in Adobe Shockwave Player before 11.5.8.612 does not properly parse .dir files, which allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a malformed file containing an invalid value, as demonstrated by a value at position 0x3712 of a certain file.

IML32.dll in Adobe Shockwave Player before 11.5.8.612 does not properly parse .dir files, which allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a malformed file containing an invalid value, as demonstrated by a value at position 0x3712 of a certain file.

EPSS

Процентиль: 90%
0.06029
Низкий

Дефекты

CWE-119

Связанные уязвимости

nvd
больше 15 лет назад

IML32.dll in Adobe Shockwave Player before 11.5.8.612 does not properly parse .dir files, which allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a malformed file containing an invalid value, as demonstrated by a value at position 0x3712 of a certain file.

EPSS

Процентиль: 90%
0.06029
Низкий

Дефекты

CWE-119