U radu programskog paketa Adobe Flash Player uočeno je više sigurnosnih ranjivosti. Napadač ih može iskoristiti za napad uskraćivanjem usluga (DoS), proizvoljno izvršavanje programskog koda te otkrivanje osjetljivih podataka.
Sigurnosne ranjivosti su posljedica pogrešaka u programskim komponentama kao što su cjelobrojno prepisivanje i korupcija memorije.
Posljedica:
Zlonamjerni korisnik ranjivosti može iskoristiti za DoS napad, proizvoljno izvršavanje programskog koda te otkrivanje osjetljivih korisničkih informacija.
Rješenje:
Svim se korisnicima savjetuje nadogradnja paketa na novije inačice.
Oracle Solaris Adobe Flash Player Multiple Vulnerabilities
Secunia Advisory SA45404
Release Date 2011-07-25
Criticality level Highly criticalHighly critical
Impact Exposure of sensitive information
System access
Where From remote
Authentication level Available in Customer Area
Report reliability Available in Customer Area
Solution Status Vendor Patch
Systems affected Available in Customer Area
Approve distribution Available in Customer Area
Operating System
Oracle Solaris 11 Express
Sun Solaris 10
Secunia CVSS Score Available in Customer Area
CVE Reference(s) CVE-2011-0579 CVSS available in Customer Area
CVE-2011-0618 CVSS available in Customer Area
CVE-2011-0619 CVSS available in Customer Area
CVE-2011-0620 CVSS available in Customer Area
CVE-2011-0621 CVSS available in Customer Area
CVE-2011-0622 CVSS available in Customer Area
CVE-2011-0623 CVSS available in Customer Area
CVE-2011-0624 CVSS available in Customer Area
CVE-2011-0625 CVSS available in Customer Area
CVE-2011-0626 CVSS available in Customer Area
CVE-2011-0627 CVSS available in Customer Area
CVE-2011-0628 CVSS available in Customer Area
Description
Oracle has acknowledged multiple vulnerabilities in Adobe Flash Player included in Solaris, which can be exploited by malicious people to disclose potentially sensitive information and compromise a user's system.
For more information:
SA44590
Solution
Apply patches.
Further details available in Customer Area
Original Advisory
http://blogs.oracle.com/sunsecurity/entry/multiple_vulnerabilities_in_adobe_flashplayer
Other references
Further details available in Customer Area
Posljednje sigurnosne preporuke