OSVDB ID: 28733

Title: Adobe Flash Player Malformed SWF Processing Unspecified DoS

Info

Disclosure

Sep 12, 2006

Discovery

Unknown

Dates

Exploit

Unknown

Solution

Nov 14, 2006

Description

Adobe Flash Player contains a flaw that may allow a denial of service. The issue is triggered when a victim opens a malformed and compressed SWF file. This will result in the application hosting the flash player, typically a web browser, to crach.

Classification

Location: Remote / Network Access
Attack Type: Denial of Service
Impact: Loss of Availability
Solution: Upgrade
Exploit: Exploit Unknown
Disclosure: OSVDB Verified, Vendor Verified

Solution

Upgrade to version 9.0.16.0 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.

Products

Adobe Systems Incorporated

Flash Player

8.0.24.0

References

Credit

Unknown or Incomplete



Direct URL: http://osvdb.org/28733