CVE-2007-3457
Publication date 11 July 2007
Last updated 17 July 2025
Ubuntu priority
Description
Adobe Flash Player 8.0.34.0 and earlier insufficiently validates HTTP Referer headers, which might allow remote attackers to conduct a CSRF attack via a crafted SWF file.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| flashplugin-nonfree | ||