Summary
This host is installed with Adobe Flash CS3 and is prone to buffer overflow vulnerabilities.
Impact
Successful exploitation could allow remote attackers to cause heap based buffer overflows via specially crafted SWF files.
Impact Level: Application
Solution
Upgrade to Adobe Flash CS4 Professional
http://www.adobe.com/downloads/
Insight
The issues are due to boundary errors while processing overly long SWF control parameters.
Affected
Adobe Flash CS3 Professional on Windows.
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2008-4473 -
CVSS Base Score: 9.3
AV:N/AC:M/Au:N/C:C/I:C/A:C
Related Vulnerabilities
- Adobe Reader/Acrobat Multimedia Doc.media.newPlayer Code Execution Vulnerability (Win)
- Cscope Multiple Buffer Overflow vulnerability
- Adobe PageMaker Font Structure Multiple BOF Vulnerabilities
- DATAC RealWin SCADA Server On_FC_CONNECT_FCS_a_FILE Buffer Overflow Vulnerability
- Adobe Reader 'Plug-in' Buffer Overflow Vulnerability (Linux)