CVE-2010-2189

Published Jun 15, 2010

Last updated 6 years ago

Overview

Description
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, when used in conjunction with VMWare Tools on a VMWare platform, allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors.
Source
psirt@adobe.com
NVD status
Modified

Social media

Hype score
Not currently trending

Risk scores

CVSS 2.0

Type
Primary
Base score
9.3
Impact score
10
Exploitability score
8.6
Vector string
AV:N/AC:M/Au:N/C:C/I:C/A:C

Weaknesses

nvd@nist.gov
CWE-119

Evaluator

Comment
Per:http://www.adobe.com/support/security/bulletins/apsb10-14.html 'This update resolves a memory corruption vulnerability that could lead to code execution (CVE-2010-2189). Note: This issue occurs only on VMWare systems with VMWare Tools enabled.'
Impact
-
Solution
-

Configurations