Oval Definition:oval:org.mitre.oval:def:22730
Revision Date:2014-05-26Version:68
Title:ELSA-2008:0945: flash-plugin security update (Critical)
Description:The ActionScript 2 virtual machine in Adobe Flash Player 10.x before 10.0.12.36 and 9.x before 9.0.151.0, and Adobe AIR before 1.5, does not validate character elements during retrieval from the dictionary data structure, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted PDF file.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2007-4324
CVE-2007-6243
CVE-2008-3873
CVE-2008-4401
CVE-2008-4503
CVE-2008-4818
CVE-2008-4819
CVE-2008-4821
CVE-2008-4822
CVE-2008-4823
CVE-2008-4824
CVE-2008-5361
CVE-2008-5362
CVE-2008-5363
ELSA-2008:0945-02
Platform(s):Oracle Linux 5
Product(s):flash-plugin
Definition Synopsis
  • Oracle Linux 5.x
  • AND flash-plugin is earlier than 0:10.0.12.36-2.el5
  • BACK