Integer overflow in Adobe Flash Player 9.0.45.0 and earlier might allow remote attackers to execute arbitrary code via a large length value for a (1) Long string or (2) XML variable type in a crafted (a) FLV or (b) SWF file, related to an "input validation error," including a signed comparison of values that are assumed to be non-negative.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2007-07-11 09:30
Updated : 2018-10-16 09:49
NVD link : CVE-2007-3456
Mitre link : CVE-2007-3456
JSON object : View
CWE
CWE-189
Numeric Errors
Products Affected
adobe
- flash_player