
CVE-2010-3654 – Adobe Flash Player < 10.1.53.64 - Action Script Type Confusion (ASLR + DEP Bypass)
https://notcve.org/view.php?id=CVE-2010-3654
29 Oct 2010 — Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows, Mac OS X, Linux, and Solaris and 10.1.95.1 on Android, and authplay.dll (aka AuthPlayLib.bundle or libauthplay.so.0.0.0) in Adobe Reader and Acrobat 9.x through 9.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted SWF content, as exploited in the wild in October 2010. Flash Player de Adobe anterior a versión 9.0.289.0 y versiones 10.x anteriores a 1... • https://www.exploit-db.com/exploits/17187 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2010-2160 – Adobe Flash Player AVM newFrameState Integer Overfow Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2010-2160
15 Jun 2010 — Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via an invalid offset in an unspecified undocumented opcode in ActionScript Virtual Machine 2, related to getouterscope, a different vulnerability than CVE-2010-2165, CVE-2010-2166, CVE-2010-2171, CVE-2010-2175, CVE-2010-2176, CVE-2010-2177, CVE-2010-2178, CVE-2010-2180, CVE-2010-2182, CVE-2010-2184, CVE-2010-21... • http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2010-2161 – flash-plugin: multiple security flaws (APSB10-14)
https://notcve.org/view.php?id=CVE-2010-2161
15 Jun 2010 — Array index error in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers to execute arbitrary code via unspecified "types of Adobe Flash code." Un error de índice de matriz en Adobe Flash Player anterior a versión 9.0.277.0 y versión 10.x anterior a 10.1.53.64, y Adobe AIR anterior a versión 2.0.2.12610, podría permitir a atacantes ejecutar código arbitrario por medio de "types of Adobe Flash code." no especificado. • http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751 • CWE-94: Improper Control of Generation of Code ('Code Injection') •

CVE-2010-2162 – Adobe Flash Player Multiple Atom MP4 Parsing Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2010-2162
15 Jun 2010 — Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of service (heap memory corruption) or possibly execute arbitrary code via vectors related to improper length calculation and the (1) STSC, (2) STSZ, and (3) STCO atoms. Adobe Flash Player anterior a v9.0.277.0 y v10.x anterior a v10.1.53.64, y Adobe AIR anterior a v2.0.2.12610, permite a los atacantes causar una denegación de servicio (corrupción de la memoria dinámica) o la ... • http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2010-2163 – flash-plugin: multiple security flaws (APSB10-14)
https://notcve.org/view.php?id=CVE-2010-2163
15 Jun 2010 — Multiple unspecified vulnerabilities in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers to execute arbitrary code via unknown vectors. Múltiples vulnerabilidades no especificadas en Adobe Flash Player anterior a v9.0.277.0 y v10.x anterior a v10.1.53.64, y Adobe AIR anterior a v2.0.2.12610, pueden permitir a los atacantes ejecutar código de su elección a través de vectores de ataque desconocidos. • http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751 • CWE-94: Improper Control of Generation of Code ('Code Injection') •

CVE-2010-2164 – flash-plugin: multiple security flaws (APSB10-14)
https://notcve.org/view.php?id=CVE-2010-2164
15 Jun 2010 — Use-after-free vulnerability in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers to execute arbitrary code via unspecified vectors related to an unspecified "image type within a certain function." Una vulnerabilidad de uso de memoria previamente liberada en Adobe Flash Player anterior a versión 9.0.277.0 y versión 10.x anterior a 10.1.53.64, y Adobe AIR anterior a versión 2.0.2.12610, podría permitir a los atacantes ejecutar código arbit... • http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751 • CWE-399: Resource Management Errors •

CVE-2010-2165 – flash-plugin: multiple security flaws (APSB10-14)
https://notcve.org/view.php?id=CVE-2010-2165
15 Jun 2010 — Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-2160, CVE-2010-2166, CVE-2010-2171, CVE-2010-2175, CVE-2010-2176, CVE-2010-2177, CVE-2010-2178, CVE-2010-2180, CVE-2010-2182, CVE-2010-2184, CVE-2010-2187, and CVE-2010-2188. Adobe Flash Player anteriores a v9.0.277.0 y v10.x anteriores a v10.1.53.... • http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2010-2166 – flash-plugin: multiple security flaws (APSB10-14)
https://notcve.org/view.php?id=CVE-2010-2166
15 Jun 2010 — Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-2160, CVE-2010-2165, CVE-2010-2171, CVE-2010-2175, CVE-2010-2176, CVE-2010-2177, CVE-2010-2178, CVE-2010-2180, CVE-2010-2182, CVE-2010-2184, CVE-2010-2187, and CVE-2010-2188. Adobe Flash Player v9.0.277.0 y v10.x antes de v10.1.53.64, y Adobe AIR a... • http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2010-2167 – flash-plugin: multiple security flaws (APSB10-14)
https://notcve.org/view.php?id=CVE-2010-2167
15 Jun 2010 — Multiple heap-based buffer overflows in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers to execute arbitrary code via unspecified vectors related to malformed (1) GIF or (2) JPEG data. Múltiples desbordamientos de búffer basados en montículo en Adobe Flash Player anterior a v9.0.277.0 y v10.x anterior a v10.1.53.64, y Adobe AIR anterior a v2.0.2.12610, puede permitir a atacantes ejecutar código de su elección a través de vectores sin es... • http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2010-2169 – flash-plugin: multiple security flaws (APSB10-14)
https://notcve.org/view.php?id=CVE-2010-2169
15 Jun 2010 — Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allow attackers to cause a denial of service (pointer memory corruption) or possibly execute arbitrary code via unspecified vectors. Adobe Flash Player anterior a v9.0.277.0 y v10.x anterior a v10.1.53.64 y Adobe AIR anterior a v2.0.2.12610, permiten a los atacantes a provocar una denegación de servicio (corrupción de la memoria de puntero) o puede que ejecutar código de su elección a través de vectores no espe... • http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •