Adobe Flash Player / AIR Buffer Overflow Vulnerability
4 Apr. 2013
Summary
Adobe flash player / AIR suffers from overflow vulnerability.
Credit:
The information has been provided by Mateusz Jurczyk - Google Security Team Gynvael Coldwind - Google Security Team Fermin Serna - Google Security Team
The original article can be found at: http://www.adobe.com/support/security/bulletins/apsb13-05.html
Vulnerable Systems:
* Adobe Flash Player 11.5.502.149 and prior
* Adobe AIR 3.5.0.1060 and prior
Adobe Flash Player and AIR contain an unspecified overflow condition. The issue is triggered as user-supplied input is not properly validated. With a specially crafted file, a context-dependent attacker can cause a buffer overflow, resulting in a denial of service or potentially executing arbitrary code.