Adobe Flash Player and AIR Remote Stack Overflow Vulnerability

  • 8 April 2014
  • 0 replies
  • 294 views

Userlevel 7
Adobe Flash Player and AIR are prone to a remote stack overflow vulnerability. 
 
This vulnerability applies to versions:
Adobe Flash Player 11.2.202.235, Adobe Flash Player 11.2.202.233, Adobe Flash Player 11.2.202.229,
Adobe Flash Player 11.2.202.228, Adobe Flash Player 11.2.202.223, Adobe Flash Player 11.1.115.8, 
Adobe Flash Player 11.1.115.7, Adobe Flash Player 11.1.115.6, Adobe Flash Player 11.1.112.61,
Adobe Flash Player 11.1.111.9, Adobe Flash Player 11.1.111.8, Adobe Flash Player 11.1.111.7, 
Adobe Flash Player 11.1.111.6, Adobe Flash Player 11.1.111.5, Adobe Flash Player 11.1.102.63, 
Adobe Flash Player 11.1.102.62, Adobe Flash Player 11.1.102.55, Adobe Flash Player 11.1.102.228,
Adobe Flash Player 11.0.1.152.

An attacker can exploit this issue to execute arbitrary code in the context of the user running the affected application. Failed exploit attempts will likely result in denial-of-service conditions. Reports indicate that this issue is being exploited in the wild.
The solution is simple and the updates are available, so if somehow you are still using the old version of Adobe products don't marginalize the official upgrades.
 
Full Article

0 replies

Be the first to reply!

Reply