This application requires Javascript for optimal performance.

Adobe.Flash.Local.File.Check.Disclosure

Release Date

Dec 08, 2009

Severity

medium

Impact

Information Disclosure

Description

This indicates an attack attempt against a local file information-disclosure vulnerability in Adobe Flash Player.

The vulnerability is caused by an error when the vulnerable software checks the local file state. It allows a remote attacker to obtain information about the existence of local files.

Affected Products

Adobe Flash Player 10.0.32.18 and earlier versions
Adobe AIR 1.5.2 and earlier versions

Recommended Actions

Refer to the vendor's web site for the suggested workaround:
http://www.adobe.com/support/security/bulletins/apsb09-19.html

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2009-3951

Reference/s

http://www.adobe.com/support/security/bulletins/apsb09-19.html

Reference: VID-18005