Adobe Shockwave Player Multiple Vulnerabilities
RISK: Medium Risk
Multiple vulnerabilities have been identified in Adobe Shockwave Player, which could be exploited by remote attackers to compromise a vulnerable system.
1. An invalid index when handling certain Shockwave content, which could be exploited to execute arbitrary code via a specially crafted web page.
2. An invalid pointer when processing certain Shockwave content, which could be exploited to execute arbitrary code by tricking a user into visiting a specially crafted web page.
3. An invalid pointer when handling certain Shockwave content, which could be exploited to execute arbitrary code by tricking a user into visiting a specially crafted web page.
4. A memory corruption related to string processing, which could be exploited to execute arbitrary code by tricking a user into visiting a specially crafted web page.
Impact
- Denial of Service
- Remote Code Execution
System / Technologies affected
- Shockwave Player 11.5.1.601 and earlier versions
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Upgrade to Shockwave Player version 11.5.2.602
http://get.adobe.com/shockwave/
Vulnerability Identifier
Source
Related Link
Share with