Lucene search

K
cve[email protected]CVE-2009-1866
HistoryJul 31, 2009 - 7:30 p.m.

CVE-2009-1866

2009-07-3119:30:00
CWE-119
web.nvd.nist.gov
32
cve-2009-1866
adobe flash player
adobe air
buffer overflow
denial of service
code execution
adobe
nvd

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

8.1 High

AI Score

Confidence

High

0.005 Low

EPSS

Percentile

77.5%

Stack-based buffer overflow in Adobe Flash Player before 9.0.246.0 and 10.x before 10.0.32.18, and Adobe AIR before 1.5.2, allows attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unspecified vectors.

Affected configurations

NVD
Node
adobeairRangeโ‰ค1.5.1
OR
adobeairMatch1.0
OR
adobeairMatch1.01
OR
adobeairMatch1.1
OR
adobeairMatch1.5
OR
adobeflash_playerRangeโ‰ค10.0.22.87
OR
adobeflash_playerMatch7.0
OR
adobeflash_playerMatch7.0.1
OR
adobeflash_playerMatch7.0.25
OR
adobeflash_playerMatch7.0.63
OR
adobeflash_playerMatch7.0.63linux
OR
adobeflash_playerMatch7.0.69.0
OR
adobeflash_playerMatch7.0.70.0
OR
adobeflash_playerMatch7.1
OR
adobeflash_playerMatch7.1.1
OR
adobeflash_playerMatch7.2
OR
adobeflash_playerMatch8.0
OR
adobeflash_playerMatch8.0basic
OR
adobeflash_playerMatch8.0pro
OR
adobeflash_playerMatch8.0.24.0
OR
adobeflash_playerMatch8.0.34.0
OR
adobeflash_playerMatch8.0.35.0
OR
adobeflash_playerMatch8.0.39.0
OR
adobeflash_playerMatch9.0.16
OR
adobeflash_playerMatch9.0.20
OR
adobeflash_playerMatch9.0.20.0
OR
adobeflash_playerMatch9.0.28
OR
adobeflash_playerMatch9.0.28.0
OR
adobeflash_playerMatch9.0.31.0
OR
adobeflash_playerMatch9.0.45.0
OR
adobeflash_playerMatch9.0.47.0
OR
adobeflash_playerMatch9.0.48.0
OR
adobeflash_playerMatch9.0.112.0
OR
adobeflash_playerMatch9.0.114.0
OR
adobeflash_playerMatch9.0.115.0
OR
adobeflash_playerMatch9.0.124.0
OR
adobeflash_playerMatch10.0.0.584
OR
adobeflash_playerMatch10.0.12.10
OR
adobeflash_playerMatch10.0.12.36
OR
adobeflexMatch3.0

References

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

8.1 High

AI Score

Confidence

High

0.005 Low

EPSS

Percentile

77.5%