Adobe Flash Player and AIR 'exception_count' Integer Overflow Vulnerability
19 Apr. 2012
Summary
This allows remote attackers to execute arbitrary code via an SWF file with a large exception_count value that triggers memory corruption, related to "generation of ActionScript exception handlers."
Vulnerable Systems:
* Adobe Flash Player 10.0.32 18
* Adobe Flash Player 10.0.22 .87
* Adobe Flash Player 10.0.15 .3
* Adobe Flash Player 10.0.12 .36
* Adobe Flash Player 10.0.12 .35
* Adobe Flash Player 10
* Adobe Flash CS4 Professional 0
* Adobe Flash CS3 Professional 0
* Adobe AIR 1.5.2
* Adobe AIR 1.5.1
* Adobe AIR 1.5
* Adobe AIR 1.1
* Adobe AIR 1.01
* Adobe AIR 1.0
Immune system:
* Adobe Flash Player 9.0.260.0
* Adobe Flash Player 10.0.42.34
* Adobe AIR 1.5.3
Adobe Flash Player and Adobe AIR are prone to an integer-overflow vulnerability.
Attackers can exploit this issue to execute arbitrary code in the context of the application. Failed attacks may cause a denial-of-service condition.
The following products are affected:
Adobe Flash Player 10.0.32.18 and prior
Adobe AIR 1.5.2 and prior
Vendor Status:
Adobe as issued an update for this vulnerablity.