int(4710)

Vulnerability Bulletins


Ejecución remota de código en Adobe Shockwave Player

Vulnerability classification

Property Value
Confidence level Oficial
Impact Obtener acceso
Dificulty Experto
Required attacker level Acceso remoto sin cuenta a un servicio estandar

System information

Property Value
Affected manufacturer Comercial Software
Affected software Adobe Shockwave Player < 11.5.0.600

Description

Se ha descubierto una vulnerabilidad en Adobe Shockwave Player.

Un atacante remoto podría ejecutar código arbitrario mediante un fichero Shockwave especialmente diseñado.

Solution



Actualización de software

Adobe (APSA09-08)
Shockwave Player 11.5.0.600

Standar resources

Property Value
CVE CVE-2009-1860
BID 35469

Other resources

Adobe Security Bulletin (APSB09-08)
http://www.adobe.com/support/security/bulletins/apsb09-08.html

Version history

Version Comments Date
1.0 Aviso emitido 2009-07-01