Oval Definition:oval:org.opensuse.security:def:20072500
Revision Date:2012-07-03Version:1
Title:CVE-2007-2500
Description:

server/parser/sprite_definition.cpp in GNU Gnash (aka GNU Flash Player) 0.7.2 allows remote attackers to execute arbitrary code via a large number of SHOWFRAME elements within a DEFINESPRITE element, which triggers memory corruption and enables the attacker to call free with an arbitrary address, probably resultant from a buffer overflow.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2007-2500
Platform(s):openSUSE 10.2
Product(s):
Definition Synopsis
  • suse102 is installed
  • AND gnash less than 0.7.1.cvs20061019-25.1
  • BACK