From 5d6ac3b76bff66622aaa19b62c884b169b1878b3 Mon Sep 17 00:00:00 2001 From: tabthorpe Date: Fri, 30 May 2008 11:59:51 +0000 Subject: - Document linux-flashplugin -- unspecified remote code execution vulnerability --- security/vuxml/vuln.xml | 34 ++++++++++++++++++++++++++++++++++ 1 file changed, 34 insertions(+) (limited to 'security') diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index 364570f8be97..16cfb419c9aa 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -34,6 +34,40 @@ Note: Please add new entries to the beginning of this file. --> + + linux-flashplugin -- unspecified remote code execution vulnerability + + + linux-flashplugin + 9.0r1159.0r124 + + + + +

Adobe Product Security Incident Response Team reports:

+
+

An exploit appears to be taking advantage of a known + vulnerability, reported by Mark Dowd of the ISS X-Force and wushi + of team509, that was resolved in Flash Player 9.0.124.0 + (CVE-2007-0071). This exploit does NOT appear to include a new, + unpatched vulnerability as has been reported elsewhere - customers + with Flash Player 9.0.124.0 should not be vulnerable to this + exploit. +

+
+ +
+ + 29386 + CVE-2007-0071 + http://blogs.adobe.com/psirt/ + + + 2008-05-27 + 2008-05-30 + +
+ Nagios -- Cross Site Scripting Vulnerability -- cgit