Release date:
Updated on:
Affected Systems:
Adobe Flash Player 9.x
Adobe Flash Player 10.x
Unaffected system:
Adobe Flash Player 10.3.185.21
Adobe Flash Player 10.3.181.14
Description:
--------------------------------------------------------------------------------
Bugtraq id: 47814,47811, 47812,47813
Cve id: CVE-2011-0626, CVE-2011-0625, CVE-2011-0624, CVE-2011-0623
Adobe Flash Player is an integrated multimedia Player that allows you to enjoy a wider multimedia experience on the Web. It displays and plays multimedia content from thousands of highly interactive games, to multimedia user interfaces with audio stream requirements, including live concerts and broadcasts.
Adobe Flash Player has a remote buffer overflow vulnerability. Attackers can exploit this vulnerability to execute arbitrary code on the affected system or cause DOS.
<* Source: Tavis Ormandy
Yamata Li
Link: http://www.adobe.com/support/security/bulletins/apsb11-12.html
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Adobe
-----
Adobe has released a Security Bulletin (apsb11-12) and patches for this:
Apsb11-12: Security update available for Adobe Flash Player
Link: http://www.adobe.com/support/security/bulletins/apsb11-12.html