Title : Adobe Flash FLA File Processing Code Execution Vulnerabilities VUPEN ID : VUPEN/ADV-2008-0948 CVE ID : CVE-2008-1201
Rated as : High Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-03-20
Technical Description
Multiple vulnerabilities have been identified in Adobe Flash CS3 Professional, Flash Professional 8 and Flash Basic 8, which could be exploited by attackers to take complete control of an affected system. These issues are caused by memory corruption errors when handling malformed FLA files, which could be exploited by attackers to crash an affected application or execute arbitrary code by tricking a user into opening a specially crafted FLA file.