|
|
| |
Credit:
The original article can be found at: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-3794
The original article can be found at: http://www.securityfocus.com/bid/37266
|
| |
Vulnerable Systems:
* Adobe Flash Player 10.0.32 18
* Adobe Flash Player 10.0.22 .87
* Adobe Flash Player 10.0.15 .3
* Adobe Flash Player 10.0.12 .36
* Adobe Flash Player 10.0.12 .35
* Adobe Flash Player 10
* Adobe Flash CS4 Professional 0
* Adobe Flash CS3 Professional 0
* Adobe AIR 1.5.2
* Adobe AIR 1.5.1
* Adobe AIR 1.5
* Adobe AIR 1.1
* Adobe AIR 1.01
* Adobe AIR 1.0
Immune system:
* Adobe Flash Player 9.0.260.0
* Adobe Flash Player 10.0.42.34
* Adobe AIR 1.5.3
Adobe Flash Player and Adobe AIR are prone to a heap-based buffer-overflow vulnerability.
Attackers can exploit this issue to execute arbitrary code in the context of the application. Failed attacks may cause a denial-of-service condition.
This issue affects versions *prior to* the following:
Flash Player 10.0.32.18
AIR 1.5.2
Vendor Status:
Adobe as issued an update for this vulnerablity.
Patch Availability:
http://www.adobe.com/support/security/bulletins/apsb09-19.html
CVE Information:
CVE-2009-3794
|
|
|