Candidate: CVE-2009-1869 PublicDate: 2009-07-31 19:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1869 Description: Integer overflow in the ActionScript Virtual Machine 2 (AVM2) abcFile parser in Adobe Flash Player before 9.0.246.0 and 10.x before 10.0.32.18, and Adobe AIR before 1.5.2, allows attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an AVM2 file with a large intrf_count value that triggers a dereference of an out-of-bounds pointer. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_flashplugin-nonfree: upstream_flashplugin-nonfree: released (10.0.32.18) dapper_flashplugin-nonfree: ignored hardy_flashplugin-nonfree: released (9.0.246.0ubuntu1) intrepid_flashplugin-nonfree: released (10.0.32.18ubuntu0.8.10.1) jaunty_flashplugin-nonfree: released (10.0.32.18ubuntu0.9.04.1) karmic_flashplugin-nonfree: released (10.0.32.18ubuntu1) devel_flashplugin-nonfree: released (10.0.32.18ubuntu1) Patches_adobe-flashplugin: upstream_adobe-flashplugin: released (10.0.32.18) dapper_adobe-flashplugin: DNE hardy_adobe-flashplugin: released (10.0.32.18-1hardy1) intrepid_adobe-flashplugin: released (10.0.32.18-1intrepid1) jaunty_adobe-flashplugin: released (10.0.32.18-1jaunty1) karmic_adobe-flashplugin: released (10.0.32.18-1karmic2) devel_adobe-flashplugin: not-affected (10.0.32.18-1karmic2)