Skip to main content

Adobe Flash/Shockwave Player Active Template Library Vulnerability

Last Update Date: 28 Jan 2011 Release Date: 30 Jul 2009 4530 Views

RISK: Medium Risk

A vulnerability has been identified in Adobe Flash/Shockwave Player, which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused due to the player using vulnerable MS Active Template Libraries (ATL) and headers, which could lead to code execution.


Impact

  • Remote Code Execution

System / Technologies affected

  • Adobe Shockwave Player version 11.5.0.600 and prior for Windows
  • Adobe Flash Player version 9.0.159.0 and prior
  • Adobe Flash Player version 10.0.22.87 and prior

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

Flash Player - Update to last version Flash Player (Windows) :
http://get.adobe.com/flashplayer/

Shockwave Player - Upgrade to Adobe Shockwave version 11.5.1.601 (Windows) :
http://get.adobe.com/shockwave/


Vulnerability Identifier


Source


Related Link