Anfälligkeitssuche        Suche in 202850 CVE Beschreibungen
und 87302 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:
Kategorie:Red Hat Local Security Checks
Titel:RedHat Security Advisory RHSA-2009:0332
The remote host is missing updates announced in
advisory RHSA-2009:0332.

The flash-plugin package contains a Firefox-compatible Adobe Flash Player
Web browser plug-in.

Multiple input validation flaws were found in the way Flash Player
displayed certain SWF (Shockwave Flash) content. An attacker could use
these flaws to create a specially-crafted SWF file that could cause
flash-plugin to crash, or, possibly, execute arbitrary code when the victim
loaded a page containing the specially-crafted SWF content. (CVE-2009-0520,

It was discovered that Adobe Flash Player had an insecure RPATH (runtime
library search path) set in the ELF (Executable and Linking Format) header.
A local user with write access to the directory pointed to by RPATH could
use this flaw to execute arbitrary code with the privileges of the user
running Adobe Flash Player. (CVE-2009-0521)

All users of Adobe Flash Player should install this updated package, which
upgrades Flash Player to version

Please note that this update is available via
Red Hat Network. To use Red Hat Network, launch the Red
Hat Update Agent with the following command: up2date

CVSS Score:

CVSS Vector:

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2009-0519
BugTraq ID: 33890
Cert/CC Advisory: TA09-133A
RedHat Security Advisories: RHSA-2009:0332
RedHat Security Advisories: RHSA-2009:0334
XForce ISS Database: flash-swf-unspecified-dos(48900)
Common Vulnerability Exposure (CVE) ID: CVE-2009-0520
BugTraq ID: 33880
XForce ISS Database: flash-invalid-object-bo(48887)
Common Vulnerability Exposure (CVE) ID: CVE-2009-0521
XForce ISS Database: flash-unspecified-information-disclosure(48904)
CopyrightCopyright (c) 2009 E-Soft Inc.

Dies ist nur einer von 87302 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.

© 1998-2021 E-Soft Inc. Alle Rechte vorbehalten.