CVE Database
/

CVE-2009-3799

Back to search

CVE-2009-3799

Published: Dec 10, 2009

Modified: Aug 7, 2024

PUBLISHED

Description

Integer overflow in the Verifier::parseExceptionHandlers function in Adobe Flash Player before 10.0.42.34 and Adobe AIR before 1.5.3 allows remote attackers to execute arbitrary code via an SWF file with a large exception_count value that triggers memory corruption, related to "generation of ActionScript exception handlers."

VendorProductVersions

n/a

n/a

affected
n/a

References

RHSA-2009:1657
vendor-advisory
x_refsource_REDHAT
1023307
vdb-entry
x_refsource_SECTRACK
oval:org.mitre.oval:def:8208
vdb-entry
signature
x_refsource_OVAL
60889
vdb-entry
x_refsource_OSVDB
1021716
vendor-advisory
x_refsource_SUNALERT
APPLE-SA-2010-01-19-1
vendor-advisory
x_refsource_APPLE
ADV-2009-3456
vdb-entry
x_refsource_VUPEN
SUSE-SA:2009:062
vendor-advisory
x_refsource_SUSE
37584
third-party-advisory
x_refsource_SECUNIA
37902
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:16315
vdb-entry
signature
x_refsource_OVAL
oval:org.mitre.oval:def:7191
vdb-entry
signature
x_refsource_OVAL
1023306
vdb-entry
x_refsource_SECTRACK
RHSA-2009:1658
vendor-advisory
x_refsource_REDHAT
TA09-343A
third-party-advisory
x_refsource_CERT
38241
third-party-advisory
x_refsource_SECUNIA
37199
vdb-entry
x_refsource_BID
ADV-2010-0173
vdb-entry
x_refsource_VUPEN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now