Adobe Flash Player before 10.2.154.27 on Windows, Mac OS X, Linux, and Solaris and 10.2.156.12 and earlier on Android; Adobe AIR before 2.6.19140; and Authplay.dll (aka AuthPlayLib.bundle) in Adobe Reader 9.x before 9.4.4 and 10.x through 10.0.1 on Windows, Adobe Reader 9.x before 9.4.4 and 10.x before 10.0.3 on Mac OS X, and Adobe Acrobat 9.x before 9.4.4 and 10.x before 10.0.3 on Windows and Mac OS X allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted Flash content; as demonstrated by a Microsoft Office document with an embedded .swf file that has a size inconsistency in a "group of included constants," object type confusion, ActionScript that adds custom functions to prototypes, and Date objects; and as exploited in the wild in April 2011.
References
Link Resource
http://blogs.technet.com/b/mmpc/archive/2011/04/12/analysis-of-the-cve-2011-0611-adobe-flash-player-vulnerability-exploitation.aspx Not Applicable
http://bugix-security.blogspot.com/2011/04/cve-2011-0611-adobe-flash-zero-day.html Exploit
http://contagiodump.blogspot.com/2011/04/apr-8-cve-2011-0611-flash-player-zero.html Exploit Issue Tracking
http://googlechromereleases.blogspot.com/2011/04/stable-channel-update.html Release Notes
http://lists.opensuse.org/opensuse-security-announce/2011-04/msg00004.html Mailing List Patch
http://secunia.com/advisories/44119 Broken Link Vendor Advisory
http://secunia.com/advisories/44141 Broken Link Vendor Advisory
http://secunia.com/advisories/44149 Broken Link Vendor Advisory
http://secunia.com/blog/210/ Broken Link Vendor Advisory
http://securityreason.com/securityalert/8204 Third Party Advisory
http://securityreason.com/securityalert/8292 Third Party Advisory
http://www.adobe.com/support/security/advisories/apsa11-02.html Broken Link Vendor Advisory
http://www.adobe.com/support/security/bulletins/apsb11-07.html Broken Link Vendor Advisory
http://www.adobe.com/support/security/bulletins/apsb11-08.html Broken Link Vendor Advisory
http://www.exploit-db.com/exploits/17175 Exploit Third Party Advisory VDB Entry
http://www.kb.cert.org/vuls/id/230057 Broken Link Third Party Advisory US Government Resource
http://www.redhat.com/support/errata/RHSA-2011-0451.html Broken Link Vendor Advisory
http://www.securityfocus.com/bid/47314 Broken Link Third Party Advisory VDB Entry
http://www.securitytracker.com/id?1025324 Broken Link Third Party Advisory VDB Entry
http://www.securitytracker.com/id?1025325 Broken Link Third Party Advisory VDB Entry
http://www.vupen.com/english/advisories/2011/0922 Broken Link Vendor Advisory
http://www.vupen.com/english/advisories/2011/0923 Broken Link Vendor Advisory
http://www.vupen.com/english/advisories/2011/0924 Broken Link Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/66681 Third Party Advisory VDB Entry
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14175 Broken Link
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: adobe

Published: 2011-04-13T14:00:00

Updated: 2024-06-19T17:18:17.968Z

Reserved: 2011-01-20T00:00:00


Link: CVE-2011-0611

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2011-04-13T14:55:01.217

Modified: 2024-02-02T02:39:19.227


Link: CVE-2011-0611

JSON object: View

cve-icon Redhat Information

No data.

CWE