Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-0071

Опубликовано: 09 апр. 2008
Источник: nvd
CVSS2: 9.3
EPSS Критический

Описание

Integer overflow in Adobe Flash Player 9.0.115.0 and earlier, and 8.0.39.0 and earlier, allows remote attackers to execute arbitrary code via a crafted SWF file with a negative Scene Count value, which passes a signed comparison, is used as an offset of a NULL pointer, and triggers a buffer overflow.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*
Версия от 8.0 (включая) до 8.0.39.0 (включая)
cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*
Версия от 9.0 (включая) до 9.0.115.0 (включая)

EPSS

Процентиль: 100%
0.90161
Критический

9.3 Critical

CVSS2

Дефекты

CWE-189

Связанные уязвимости

ubuntu
больше 17 лет назад

Integer overflow in Adobe Flash Player 9.0.115.0 and earlier, and 8.0.39.0 and earlier, allows remote attackers to execute arbitrary code via a crafted SWF file with a negative Scene Count value, which passes a signed comparison, is used as an offset of a NULL pointer, and triggers a buffer overflow.

redhat
больше 17 лет назад

Integer overflow in Adobe Flash Player 9.0.115.0 and earlier, and 8.0.39.0 and earlier, allows remote attackers to execute arbitrary code via a crafted SWF file with a negative Scene Count value, which passes a signed comparison, is used as an offset of a NULL pointer, and triggers a buffer overflow.

debian
больше 17 лет назад

Integer overflow in Adobe Flash Player 9.0.115.0 and earlier, and 8.0. ...

github
больше 3 лет назад

Integer overflow in Adobe Flash Player 9.0.115.0 and earlier, and 8.0.39.0 and earlier, allows remote attackers to execute arbitrary code via a crafted SWF file with a negative Scene Count value, which passes a signed comparison, is used as an offset of a NULL pointer, and triggers a buffer overflow.

EPSS

Процентиль: 100%
0.90161
Критический

9.3 Critical

CVSS2

Дефекты

CWE-189