Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Adobe Shockwave Player before 11.5.7.609 does not properly parse 3D objects in .dir (aka Director) files, which allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a modified field in a 0xFFFFFF49 record.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Adobe Shockwave Player 3D对象解析缓冲区错误漏洞
Vulnerability Description
Adobe Shockwave Player是美国奥多比(Adobe)公司的一款多媒体播放器产品,它能够将Adobe Director(一款多媒体制作软件)制作的应用程序发布到互联网上,安装有Shockwave插件的浏览器可对其进行浏览。 Adobe Shockwave Player无法解析.dir(即Director)文件中的3D对象,远程攻击者可以通过0xFFFFFF49记录中已修改的字段执行任意代码,或引发拒绝服务(堆内存破坏)。
CVSS Information
N/A
Vulnerability Type
N/A