This application requires Javascript for optimal performance.

Adobe.Products.SWF.Remote.Code.Execution

Release Date

Jul 28, 2009

Severity

critical

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates an attack attempt against a vulnerability in Adobe Reader, Acrobat and Flash Player.

The vulnerability is caused by an error when the vulnerable software handles a specially crafted SWF file or PDF file that could allow remote attackers to execute arbitrary code.

Affected Products

Reader and Acrobat 9.1.2
Flash Player 9 and 10

Recommended Actions

Currently we are not aware of any patches supplied by the vendor for this issue.

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2009-1862

Reference/s

http://www.securityfocus.com/bid/35759 (BugTraq)
http://secunia.com/advisories/35948/

Reference: VID-17606