CVE-2010-1296
Severity CVSS v4.0:
Pending analysis
Type:
CWE-119
Buffer Errors
Publication date:
27/05/2010
Last modified:
11/04/2025
Description
Multiple buffer overflows in Adobe Photoshop CS4 before 11.0.2 allow user-assisted remote attackers to execute arbitrary code via a crafted (1) .ASL, (2) .ABR, or (3) .GRD file.
Impact
Base Score 2.0
9.30
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:adobe:photoshop_cs4:*:*:*:*:*:*:*:* | 11.0.1 (including) | |
| cpe:2.3:a:adobe:photoshop_cs4:11.0:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://www.adobe.com/support/security/bulletins/apsb10-13.html
- http://www.exploit-db.com/exploits/12751
- http://www.exploit-db.com/exploits/12752
- http://www.exploit-db.com/exploits/12753
- http://www.securityfocus.com/bid/40389
- http://www.securitytracker.com/id?1024042=
- http://www.zeroscience.mk/codes/psbrush_bof.txt
- http://www.zeroscience.mk/codes/psgradient_bof.txt
- http://www.zeroscience.mk/codes/psstyle_bof.txt
- http://www.zeroscience.mk/en/vulnerabilities/ZSL-2010-4938.php
- http://www.zeroscience.mk/en/vulnerabilities/ZSL-2010-4939.php
- http://www.zeroscience.mk/en/vulnerabilities/ZSL-2010-4940.php
- https://exchange.xforce.ibmcloud.com/vulnerabilities/58888
- http://www.adobe.com/support/security/bulletins/apsb10-13.html
- http://www.exploit-db.com/exploits/12751
- http://www.exploit-db.com/exploits/12752
- http://www.exploit-db.com/exploits/12753
- http://www.securityfocus.com/bid/40389
- http://www.securitytracker.com/id?1024042=
- http://www.zeroscience.mk/codes/psbrush_bof.txt
- http://www.zeroscience.mk/codes/psgradient_bof.txt
- http://www.zeroscience.mk/codes/psstyle_bof.txt
- http://www.zeroscience.mk/en/vulnerabilities/ZSL-2010-4938.php
- http://www.zeroscience.mk/en/vulnerabilities/ZSL-2010-4939.php
- http://www.zeroscience.mk/en/vulnerabilities/ZSL-2010-4940.php
- https://exchange.xforce.ibmcloud.com/vulnerabilities/58888



