Search CVE reports


Toggle filters

971 – 980 of 987 results


CVE-2007-6246

Medium priority
Ignored

Adobe Flash Player 9.x up to 9.0.48.0, 8.x up to 8.0.35.0, and 7.x up to 7.0.70.0, when running on Linux, uses insecure permissions for memory, which might allow local users to gain privileges.

1 affected package

flashplugin-nonfree

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
flashplugin-nonfree
Show less packages

CVE-2007-6245

Low priority
Ignored

Adobe Flash Player 9.x up to 9.0.48.0, 8.x up to 8.0.35.0, and 7.x up to 7.0.70.0 allows remote attackers to modify HTTP headers for client requests and conduct HTTP Request Splitting attacks.

1 affected package

flashplugin-nonfree

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
flashplugin-nonfree
Show less packages

CVE-2007-6243

Low priority
Ignored

Adobe Flash Player 9.x up to 9.0.48.0, 8.x up to 8.0.35.0, and 7.x up to 7.0.70.0 does not sufficiently restrict the interpretation and usage of cross-domain policy files, which makes it easier for remote attackers to conduct...

1 affected package

flashplugin-nonfree

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
flashplugin-nonfree
Show less packages

CVE-2007-6242

Medium priority
Ignored

Unspecified vulnerability in Adobe Flash Player 9.0.48.0 and earlier might allow remote attackers to execute arbitrary code via unknown vectors, related to “input validation errors.”

1 affected package

flashplugin-nonfree

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
flashplugin-nonfree
Show less packages

CVE-2007-5275

Low priority

Some fixes available 4 of 8

The Adobe Macromedia Flash 9 plug-in allows remote attackers to cause a victim machine to establish TCP sessions with arbitrary hosts via a Flash (SWF) movie, related to lack of pinning of a hostname to a single IP address after...

1 affected package

flashplugin-nonfree

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
flashplugin-nonfree
Show less packages

CVE-2007-4324

Medium priority

Some fixes available 4 of 7

ActionScript 3 (AS3) in Adobe Flash Player 9.0.47.0, and other versions and other 9.0.124.0 and earlier versions, allows remote attackers to bypass the Security Sandbox Model, obtain sensitive information, and port scan arbitrary...

1 affected package

flashplugin-nonfree

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
flashplugin-nonfree
Show less packages

CVE-2007-3457

Medium priority

Some fixes available 6 of 8

Adobe Flash Player 8.0.34.0 and earlier insufficiently validates HTTP Referer headers, which might allow remote attackers to conduct a CSRF attack via a crafted SWF file.

1 affected package

flashplugin-nonfree

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
flashplugin-nonfree
Show less packages

CVE-2007-3456

Medium priority

Some fixes available 6 of 8

Integer overflow in Adobe Flash Player 9.0.45.0 and earlier might allow remote attackers to execute arbitrary code via a large length value for a (1) Long string or (2) XML variable type in a crafted (a) FLV or (b) SWF file,...

1 affected package

flashplugin-nonfree

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
flashplugin-nonfree
Show less packages

CVE-2007-2022

Medium priority

Some fixes available 6 of 8

Adobe Macromedia Flash Player 7 and 9, when used with Opera before 9.20 or Konqueror before 20070613, allows remote attackers to obtain sensitive information (browser keystrokes), which are leaked to the Flash Player applet.

1 affected package

flashplugin-nonfree

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
flashplugin-nonfree
Show less packages

CVE-2006-5330

Medium priority

Some fixes available 6 of 8

CRLF injection vulnerability in Adobe Flash Player plugin 9.0.16 and earlier for Windows, 7.0.63 and earlier for Linux, 7.x before 7.0 r67 for Solaris, and before 9.0.28.0 for Mac OS X, allows remote attackers to modify HTTP...

1 affected package

flashplugin-nonfree

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
flashplugin-nonfree
Show less packages