Title : SuSE Security Update Fixes Flash Player Remote HTTP Header Injection Vulnerability VUPEN ID : VUPEN/ADV-2006-5011 CVE ID : CVE-2006-5330
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-12-14
Technical Description
SuSE has released updated packages to address a vulnerability identified in Flash Player. This flaw could be exploited to conduct HTTP request splitting and cross-site request forgery attacks. For additional information, see : VUPEN/ADV-2006-4094