CVE-2007-3456
Published Jul 11, 2007
Last updated 6 years ago
Overview
- Description
- Integer overflow in Adobe Flash Player 9.0.45.0 and earlier might allow remote attackers to execute arbitrary code via a large length value for a (1) Long string or (2) XML variable type in a crafted (a) FLV or (b) SWF file, related to an "input validation error," including a signed comparison of values that are assumed to be non-negative.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 9.3
- Impact score
- 10
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- CWE-189
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5F93205D-6194-40BB-B691-0B3CA943FE5B", "versionEndIncluding": "9.0.45.0" }, { "criteria": "cpe:2.3:a:adobe:flash_player:9.0.16:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F35F86B6-D49A-40F4-BFFA-5D6BBA2F7D8B" }, { "criteria": "cpe:2.3:a:adobe:flash_player:9.0.18d60:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "600DDA9D-6440-48D1-8539-7127398A8678" }, { "criteria": "cpe:2.3:a:adobe:flash_player:9.0.20:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B4D5E27C-F6BF-4F84-9B83-6AEC98B4AA14" }, { "criteria": "cpe:2.3:a:adobe:flash_player:9.0.20.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "934A869D-D58D-4C36-B86E-013F62790585" }, { "criteria": "cpe:2.3:a:adobe:flash_player:9.0.28:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ACFA6611-99DA-48B0-89F7-DD99B8E30334" }, { "criteria": "cpe:2.3:a:adobe:flash_player:9.0.28.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "59AF804B-BD7A-4AD7-AD44-B5D980443B8B" }, { "criteria": "cpe:2.3:a:adobe:flash_player:9.0.31:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F5D52F86-2E38-4C66-9939-7603367B8D0E" }, { "criteria": "cpe:2.3:a:adobe:flash_player:9.0.31.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0557AA2A-FA3A-460A-8F03-DC74B149CA3D" } ], "operator": "OR" } ] } ]