Blog Reactions
Security Watch: Adobe Fixes Critical Vulnerabilities in Shockwave Player
Roger's Information Security Blog: Security Updates for Shockwave
FGCenter - Latest Threats, Advisories, Reports and News: Adobe Shockwave Player Multiple Remote Code Execution Vulnerabilities (APSB09-16)
| RT @intel_chris: RT @wuchi1: #ITRiskSpace #security, critical security updates available 4 Adobe Shockwave Player http://tinyurl.com/yjfvnyq 14 days ago |
| Adobe Shockwave Player v11.5.2.602 - has several security fixes : http://bit.ly/hZqft 14 days ago |
| Adobe is releasing updates more than MS lately, http://bit.ly/hZqft 15 days ago |
Adobe Fixes Critical Vulnerabilities in Shockwave Player
Security Watch —
... , fixes 5 vulnerabilities in prior versions that could lead to remote code execution or denial of service. Both Mac and Windows are affected.
Exploits through 3rd party add-ons, especially those from Adobe, have become popular in recent times, so it's important to apply updates as soon as possible.
Security Updates for Shockwave
Roger's Information Security Blog —
Adobe has released Adobe Shockwave 11.5.2.602 to fix multiple security vulnerabilities.
You can install this version at http://get.adobe.com/shockwave/. if you've taken the time to license Shockwave for redistribution in your company, the MSI file isn't available on the licensed distribution site.
Adobe Shockwave Player Multiple Remote Code Execution Vulnerabilities (APSB09-16)
FGCenter - Latest Threats, Advisories, Reports and News —
... are continuously updated by the FortiGuard Global Security Research Team, which enables Fortinet to deliver a combination of multi-layered security intelligence and true zero-day protection from new and emerging threats. These updates are delivered to all FortiGate, FortiMail and FortiClient products. Fortinet strictly follows responsible disclosure guidelines to ensure optimum protection during a threat's lifecycle. References: Adobe Security Advisory: http://www.adobe.com/support/security/bulletins/apsb09-16.html CVE ID: CVE-2009-3244 ...
Adobe fixes more bugs in Shockwave Player
Netflash —
... . Four of the problems could allow an attacker to execute malicious code on a computer, while the fifth one could lead to a denial-of-service condition, Adobe said in its advisory . Shockwave Player is used to display content created by Adobe's Director program, which offers advanced tools for creating interactive content, including Flash. The Director application can be used for creating 3D models, high-quality images and full-screen or long-form digital content and offers greater control over how those elements are displayed. Adobe also issued an update for the Shockwave ...
Shockwave Player APSB09-016
Nessus.org Plugins —
... by
multiple issues :
- An invalid index vulnerability could lead to code
execution. (CVE-2009-3463)
- Invalid pointer vulnerabilities could lead to code
execution. (CVE-2009-3464, CVE-2009-3465)
- An invalid string length vulnerability could potentially
lead to code execution. (CVE-2009-3466)
- A boundary condition issue could lead to a denial
of service. (CVE-2009-3244)
See also :
http://www.adobe.com/support/security/bulletins/apsb09-16.html
Solution ...
