CVE-2010-2179

Publication date 15 June 2010

Last updated 24 July 2024


Ubuntu priority

Description

Cross-site scripting (XSS) vulnerability in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, when Firefox or Chrome is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to URL parsing.

Status

Package Ubuntu Release Status
adobe-flashplugin 10.04 LTS lucid
Fixed 10.1.53.64-1lucid1
9.10 karmic
Fixed 10.1.53.64-1karmic1
9.04 jaunty
Fixed 10.1.53.64-1jaunty1
8.04 LTS hardy
Fixed 10.1.53.64-1
6.06 LTS dapper Not in release
flashplugin-nonfree 10.04 LTS lucid
Fixed 10.1.53.64ubuntu0.10.04.1
9.10 karmic
Fixed 10.1.53.64ubuntu0.9.10.1
9.04 jaunty
Fixed 10.1.53.64ubuntu0.9.04.1
8.04 LTS hardy
Fixed 10.0.1.218+really9.0.277.0ubuntu1
6.06 LTS dapper Ignored end of life


Access our resources on patching vulnerabilities