Candidate: CVE-2010-2167 PublicDate: 2010-06-15 18:00:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2167 http://www.adobe.com/support/security/bulletins/apsb10-14.html Description: Multiple heap-based buffer overflows in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers to execute arbitrary code via unspecified vectors related to malformed (1) GIF or (2) JPEG data. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_flashplugin-nonfree: upstream_flashplugin-nonfree: released (9.0.227.0,10.1.53.64) dapper_flashplugin-nonfree: ignored (reached end-of-life) hardy_flashplugin-nonfree: released (10.0.1.218+really9.0.277.0ubuntu1) jaunty_flashplugin-nonfree: released (10.1.53.64ubuntu0.9.04.1) karmic_flashplugin-nonfree: released (10.1.53.64ubuntu0.9.10.1) lucid_flashplugin-nonfree: released (10.1.53.64ubuntu0.10.04.1) devel_flashplugin-nonfree: released (10.1.53.64ubuntu1) Patches_adobe-flashplugin: upstream_adobe-flashplugin: released (10.1.53.64) dapper_adobe-flashplugin: DNE hardy_adobe-flashplugin: released (10.1.53.64-1) jaunty_adobe-flashplugin: released (10.1.53.64-1jaunty1) karmic_adobe-flashplugin: released (10.1.53.64-1karmic1) lucid_adobe-flashplugin: released (10.1.53.64-1lucid1) devel_adobe-flashplugin: DNE