Release date:
Updated on:
Affected Systems:
Adobe Shockwave Player 11.x
Unaffected system:
Adobe Shockwave Player 11.6.4.634
Description:
--------------------------------------------------------------------------------
Bugtraq id: 53420
Cve id: CVE-2012-2029, CVE-2012-2030, CVE-2012-2031, CVE-2012-2032, CVE-2012-2033
Adobe Shockwave Player is a plug-in software for playing web pages created by Director Shockwave Studio.
Adobe Shockwave Player has a remote memory corruption vulnerability. Attackers can exploit this vulnerability to execute arbitrary code.
<* Source: Rodrigo Rubira Branco (rodrigo@risesecurity.org)
Link: http://www.adobe.com/support/security/bulletins/apsb12-13.html
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Adobe
-----
Adobe has released a Security Bulletin (APSB12-13) and patches for this:
APSB12-13: Security update available for Adobe Shockwave Player
Link: http://www.adobe.com/support/security/bulletins/apsb12-13.html