Release date: 2011-12-06
Updated on: 2011-12-07
Affected Systems:
Adobe Flash Player 9.x
Adobe Flash Player 11.x
Adobe Flash Player 10.x
Description:
--------------------------------------------------------------------------------
Bugtraq id: 50935
Adobe Flash Player is an integrated multimedia Player.
Adobe Flash Player has multiple remote code execution vulnerabilities with unknown details. Remote attackers can exploit these vulnerabilities to execute arbitrary code or cause DoS in the affected applications.
<* Source: Intevydi
Link: http://seclists.org/dailydave/2011/q4/80
*>
Test method:
--------------------------------------------------------------------------------
Alert
The following procedures (methods) may be offensive and are intended only for security research and teaching. Users are at your own risk!
Http://partners.immunityinc.com/movies/VulnDisco-Flash0day-v2.mov
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Adobe
-----
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.adobe.com/support/security/