Skip to main content

Adobe Shockwave Player Multiple Memory Corruption Vulnerabilities

Last Update Date: 12 Feb 2014 12:16 Release Date: 12 Feb 2014 4304 Views

RISK: Medium Risk

TYPE: Clients - Audio & Video

TYPE: Audio & Video

Two vulnerabilities have been identified in Adobe Shockwave Player. A remote user can cause arbitrary code to be executed on the target user's system.

 

A remote user can create specially crafted Shockwave content that, when loaded by the target user, will trigger a memory corruption flaw and execute arbitrary code on the target system. The code will run with the privileges of the target user.


Impact

  • Remote Code Execution

System / Technologies affected

  • Version 12.0.7.148 and prior

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Update to version 12.0.9.149

Vulnerability Identifier


Source


Related Link