Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-3456

Опубликовано: 11 июл. 2007
Источник: ubuntu
Приоритет: medium
EPSS Высокий
CVSS2: 9.3

Описание

Integer overflow in Adobe Flash Player 9.0.45.0 and earlier might allow remote attackers to execute arbitrary code via a large length value for a (1) Long string or (2) XML variable type in a crafted (a) FLV or (b) SWF file, related to an "input validation error," including a signed comparison of values that are assumed to be non-negative.

РелизСтатусПримечание
dapper

ignored

end of life
devel

released

9.0.48.0.0ubuntu10
edgy

ignored

end of life, was needed
feisty

released

9.0.48.0.0ubuntu1~7.04.1
gutsy

released

9.0.48.0.0ubuntu10
hardy

released

9.0.48.0.0ubuntu10
intrepid

released

9.0.48.0.0ubuntu10
jaunty

released

9.0.48.0.0ubuntu10
karmic

released

9.0.48.0.0ubuntu10
upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 99%
0.76622
Высокий

9.3 Critical

CVSS2

Связанные уязвимости

redhat
около 18 лет назад

Integer overflow in Adobe Flash Player 9.0.45.0 and earlier might allow remote attackers to execute arbitrary code via a large length value for a (1) Long string or (2) XML variable type in a crafted (a) FLV or (b) SWF file, related to an "input validation error," including a signed comparison of values that are assumed to be non-negative.

nvd
около 18 лет назад

Integer overflow in Adobe Flash Player 9.0.45.0 and earlier might allow remote attackers to execute arbitrary code via a large length value for a (1) Long string or (2) XML variable type in a crafted (a) FLV or (b) SWF file, related to an "input validation error," including a signed comparison of values that are assumed to be non-negative.

debian
около 18 лет назад

Integer overflow in Adobe Flash Player 9.0.45.0 and earlier might allo ...

github
больше 3 лет назад

Integer overflow in Adobe Flash Player 9.0.45.0 and earlier might allow remote attackers to execute arbitrary code via a large length value for a (1) Long string or (2) XML variable type in a crafted (a) FLV or (b) SWF file, related to an "input validation error," including a signed comparison of values that are assumed to be non-negative.

EPSS

Процентиль: 99%
0.76622
Высокий

9.3 Critical

CVSS2