Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows, Mac OS X, Linux, and Solaris and 10.1.95.1 on Android, and authplay.dll (aka AuthPlayLib.bundle or libauthplay.so.0.0.0) in Adobe Reader and Acrobat 9.x through 9.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted SWF content, as exploited in the wild in October 2010.
CVSS Details
- CVSS 3.1 Base Score: 8.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Adobe Air | — | Upgrade to the latest version of Adobe AIR | Mar 21, 2012 | Oct 29, 2010 |
| Adobe Flash Apsb10 26 | — | Upgrade to Adobe Flash Player version 10.1.102.64 for Mac OS XUpgrade to Adobe Flash Player version 9.0.289.0 for Mac OS XUpgrade to Adobe Flash Player version 10.1.102.64 for WindowsUpgrade to Adobe Flash Player version 10.1.102.64 for LinuxUpgrade to Adobe Flash Player version 9.0.289.0 for WindowsUpgrade to Adobe Flash Player version 9.0.289.0 for Linux | Nov 11, 2010 | Oct 29, 2010 |
| Adobe Reader Apsb10 28 | — | — | Apr 12, 2012 | Oct 29, 2010 |
| Apple Osx Flashplayerplugin | — | Upgrade macOS to the latest versionApply OS X security update 2010-007 | Dec 16, 2011 | Oct 29, 2010 |
| Freebsd | — | Upgrade linux-f10-flashpluginUpgrade linux-f8-flashpluginUpgrade linux-flashplugin | Dec 10, 2025 | Nov 6, 2010 |
| Gentoo Linux | — | Upgrade www-plugins/adobe-flash.Upgrade app-text/acroread. | Oct 30, 2017 | Oct 29, 2010 |
| Suse | — | Upgrade acroread-fonts-jaUpgrade acroread-fonts-zh_TWUpgrade acroread-fonts-koUpgrade acroreadUpgrade flash-playerUpgrade acroread-cmapsUpgrade acroread_jaUpgrade acroread-fonts-zh_CN | Feb 17, 2015 | Oct 29, 2010 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub