CVE-2006-3311

Description

Buffer overflow in Adobe Flash Player 8.0.24.0 and earlier, Flash Professional 8, Flash MX 2004, and Flex 1.5 allows user-assisted remote attackers to execute arbitrary code via a long, dynamically created string in a SWF movie.

Risk Information

Base Score
9.8
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
57.875

Associated Vulnerability

VulnerabilityOS Platform
Upgrade Adobe flash player 8.0.24.0 to latest versionWindows
Vulnerabilities CVE-2006-3311,CVE-2006-3587,CVE-2006-3588,CVE-2006-4640 are affected in Adobe Flash Player Plugin 8.0.24.0Windows
Vulnerabilities CVE-2006-3311,CVE-2006-3587,CVE-2006-3588,CVE-2006-4640 are affected in Adobe Flash Player PPAPI 8.0.24.0Windows
Vulnerability CVE-2006-3311,CVE-2006-4640 are affected in Adobe Flash Player 11 ActiveX 2004Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234