Release DateDec 08, 2009 |
Severitymedium |
ImpactInformation Disclosure |
DescriptionThis indicates an attack attempt against a local file information-disclosure vulnerability in Adobe Flash Player.The vulnerability is caused by an error when the vulnerable software checks the local file state. It allows a remote attacker to obtain information about the existence of local files. |
Affected ProductsAdobe Flash Player 10.0.32.18 and earlier versionsAdobe AIR 1.5.2 and earlier versions |
Recommended ActionsRefer to the vendor's web site for the suggested workaround:http://www.adobe.com/support/security/bulletins/apsb09-19.html |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2009-3951 |
Reference/shttp://www.adobe.com/support/security/bulletins/apsb09-19.html |