CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:P/I:P/A:P
AI Score
Confidence
Low
EPSS
Percentile
99.1%
Macromedia Flash plugin (1) Flash.ocx 7.0.19.0 (Windows) and earlier and (2) libflashplayer.so before 7.0.25.0 (Unix) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via parameters to the ActionDefineFunction ActionScript call in a SWF file, which causes an improper memory access condition, a different vulnerability than CVE-2005-2628.
Vendor | Product | Version | CPE |
---|---|---|---|
macromedia | flash_player | 6.0 | cpe:2.3:a:macromedia:flash_player:6.0:*:*:*:*:*:*:* |
macromedia | flash_player | 6.0.29.0 | cpe:2.3:a:macromedia:flash_player:6.0.29.0:*:*:*:*:*:*:* |
macromedia | flash_player | 6.0.40.0 | cpe:2.3:a:macromedia:flash_player:6.0.40.0:*:*:*:*:*:*:* |
macromedia | flash_player | 6.0.47.0 | cpe:2.3:a:macromedia:flash_player:6.0.47.0:*:*:*:*:*:*:* |
macromedia | flash_player | 6.0.65.0 | cpe:2.3:a:macromedia:flash_player:6.0.65.0:*:*:*:*:*:*:* |
macromedia | flash_player | 6.0.79.0 | cpe:2.3:a:macromedia:flash_player:6.0.79.0:*:*:*:*:*:*:* |
macromedia | flash_player | 7.0.19.0 | cpe:2.3:a:macromedia:flash_player:7.0.19.0:*:*:*:*:*:*:* |
macromedia | flash_player | 7.0_r19 | cpe:2.3:a:macromedia:flash_player:7.0_r19:*:*:*:*:*:*:* |
marc.info/?l=bugtraq&m=113140426614670&w=2
secunia.com/advisories/17430/
secunia.com/advisories/17437/
secunia.com/advisories/17481/
secunia.com/advisories/17626/
secunia.com/advisories/17738/
securityreason.com/securityalert/149
www.macromedia.com/devnet/security/security_zone/mpsb05-07.html
www.microsoft.com/technet/security/advisory/910550.mspx
www.sec-consult.com/226.html
www.securityfocus.com/bid/15334
www.vupen.com/english/advisories/2005/2317
exchange.xforce.ibmcloud.com/vulnerabilities/23022