CVE-2010-3654

Priority
Low
Description
Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows,
Mac OS X, Linux, and Solaris and 10.1.95.1 on Android, and authplay.dll
(aka AuthPlayLib.bundle or libauthplay.so.0.0.0) in Adobe Reader and
Acrobat 9.x through 9.4, allows remote attackers to execute arbitrary code
or cause a denial of service (memory corruption and application crash) via
crafted SWF content, as exploited in the wild in October 2010.
References
Notes
jdstrand> 10.1.85.3 and ealier are affected. Fix expected around November 15
Package
Upstream:released (10.1.102.64)
Ubuntu 8.04 LTS (Hardy Heron):not-affected (10.2.152.27-0hardy1)
Ubuntu 10.04 LTS (Lucid Lynx):not-affected (10.2.152.27-0lucid1)
Ubuntu 11.04 (Natty Narwhal):DNE
Package
Upstream:released (10.1.102.64)
Ubuntu 8.04 LTS (Hardy Heron):not-affected (10.0.1.218+really9.0.289.0ubuntu1)
Ubuntu 10.04 LTS (Lucid Lynx):not-affected (10.1.102.65ubuntu0.10.04.1)
Ubuntu 11.04 (Natty Narwhal):not-affected (10.1.102.65ubuntu2)
More Information

Valid XHTML 1.0 Strict

Updated: 2012-06-01 15:21:26 UTC (commit 5347)