Skip to main content

Adobe Flash CS3 SWF File Handling Buffer Overflow Vulnerabilities

Last Update Date: 28 Jan 2011 Release Date: 17 Oct 2008 4775 Views

RISK: Medium Risk

Multiple vulnerabilities have been identified in Adobe Flash CS3, which could be exploited by attackers to compromise a vulnerable system. These issues are caused by heap overflow errors when processing overly long control parameters within an SWF file, which could be exploited by attackers to execute arbitrary code by tricking a user into opening a specially crafted SWF file.


Impact

  • Remote Code Execution

System / Technologies affected

  • Adobe Flash CS3 Professional (Windows)

Solutions

There is no patch available for this vulnerability currently. Please do not open untrusted SWF files.


Vulnerability Identifier


Source


Related Link