CVE-2009-1869
Adobe AIR < 1.5.2 - Integer Overflow in AVM2 abcFile Parser
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2009-1869. PoCs published by Roee Hay.
AI-analyzed exploit summary This is a vulnerability writeup for CVE-2009-1869, describing an integer-overflow vulnerability in Adobe Flash Player and Adobe AIR. The issue allows arbitrary code execution and affects versions prior to Flash Player 10.0.32.18 and AIR 1.5.2.
Description
Integer overflow in the ActionScript Virtual Machine 2 (AVM2) abcFile parser in Adobe Flash Player before 9.0.246.0 and 10.x before 10.0.32.18, and Adobe AIR before 1.5.2, allows attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an AVM2 file with a large intrf_count value that triggers a dereference of an out-of-bounds pointer.
Exploits (1)
This is a vulnerability writeup for CVE-2009-1869, describing an integer-overflow vulnerability in Adobe Flash Player and Adobe AIR. The issue allows arbitrary code execution and affects versions prior to Flash Player 10.0.32.18 and AIR 1.5.2.