Upstream information
Description
Adobe Flash Player 9.x before 9.0.159.0 and 10.x before 10.0.22.87 does not properly remove references to destroyed objects during Shockwave Flash file processing, which allows remote attackers to execute arbitrary code via a crafted file, related to a "buffer overflow issue."NVD CVSS v2 Base Score: 9.3 (AV:N/AC:M/Au:N/C:C/I:C/A:C)
Novell/SUSE information
Novell Bugzilla entry: 476907 SUSE Security Advisories:- SUSE-SA:2009:011, published Thu, 26 Feb 2009 16:00:00 +0000
- SUSE-SA:2009:041, published Wed, 05 Aug 2009 09:00:00 +0000
List of released packages
| Product(s) | Fixed package version(s) | References |
|---|---|---|
| openSUSE 10.3 |
| |
| Novell Linux Desktop 9 for x86 Novell Linux Desktop 9 for x86_64 |
| sles9-nld.x86-64 sles9-nld.x86 YOU Patch Nr: 12357 |
| SUSE Linux Enterprise Desktop 10 SP2 for AMD64 and Intel EM64T SUSE Linux Enterprise Desktop 10 SP2 for x86 |
| sled10-sp2.x86-64 sled10-sp2.x86 ZYPP Patch Nr: 6020 |
