MozTW 討論區

各項 Mozilla 相關軟體與技術討論
現在的時間是 2024-04-18, 20:34

所有顯示的時間為 UTC + 8 小時





發表新文章 回覆主題  [ 1 篇文章 ] 
發表人 內容
文章發表於 : 2005-11-07, 09:49 
離線
[網站管理員]
頭像

註冊時間: 2003-07-22, 11:00
文章: 1796
來自: Sydney
New Critical security advisory was puhlished from FrSIRT, the vulnerability allows remote attackers to execute arbitrary commands.

Details from http://www.frsirt.com/english/advisories/2005/2317 :
引言回覆:
Rated as : Critical
Remotely Exploitable : Yes
Locally Exploitable : Yes
Release Date : 2005-11-05

Technical Description

A critical vulnerability has been identified in Macromedia Flash Player, which may be exploited by remote attackers to execute arbitrary commands. This issue is due to a memory corruption error when validating indexes of certain arrays, which could be exploited by remote attackers to compromise a vulnerable system by convincing a user to visit a specially crafted HTML Web page or open a malicious "SWF" Flash file.

About affected versions:
Macromedia Flash Player 7.0.19.0 and prior

Solution
Upgrade to Flash Player version 8.0.22.0 or 7.0.61.0:
http://www.macromedia.com/go/getflash

Also from http://www.macromedia.com/devnet/securi ... 05-07.html :
引言回覆:
Macromedia recommends all Flash Player 7 and earlier users upgrade to this new version, which can be downloaded from the Macromedia Player Download Center. For customers with operating systems that do not support Flash Player 8 (Microsoft Windows 95, Microsoft Windows NT, or classic Macintosh operating systems), please refer to the Flash Player 7 update TechNote.

_________________
Netscape 9 | SillyDog701: Switch guide | Browser Archive | MozInfo701
MacCentre701 | AntBlog701
Don't steal music.


回頂端
Mozilla/5.0 (Macintosh; U; PPC Mac OS X; en) AppleWebKit/416.11 (KHTML, like Gecko) Safari/416.12
 個人資料  
引用回覆  
顯示文章 :  排序  
發表新文章 回覆主題  [ 1 篇文章 ] 

所有顯示的時間為 UTC + 8 小時


誰在線上

正在瀏覽這個版面的使用者:沒有註冊會員 和 142 位訪客


不能 在這個版面發表主題
不能 在這個版面回覆主題
不能 在這個版面編輯您的文章
不能 在這個版面刪除您的文章
不能 在這個版面上傳附加檔案

搜尋:
前往 :  
Powered by phpBB® Forum Software © phpBB Group
正體中文語系由 竹貓星球 維護製作
© moztw.org, Mozilla Foundation
MozTW,Mozilla 台灣社群