~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
Candidate: CVE-2008-5363
PublicDate: 2008-12-08
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5363
Description:
 The ActionScript 2 virtual machine in Adobe Flash Player 10.x before
 10.0.12.36 and 9.x before 9.0.151.0, and Adobe AIR before 1.5, does not
 validate character elements during retrieval from the dictionary data
 structure, which allows remote attackers to cause a denial of service (NULL
 pointer dereference and application crash) via a crafted PDF file.
Ubuntu-Description:
Notes:
Bugs:
Priority: low
Discovered-by:
Assigned-to:

Patches_flashplugin-nonfree:
upstream_flashplugin-nonfree: needs-triage
dapper_flashplugin-nonfree: ignored (reached end-of-life)
gutsy_flashplugin-nonfree: not-affected
hardy_flashplugin-nonfree: not-affected
intrepid_flashplugin-nonfree: not-affected
jaunty_flashplugin-nonfree: not-affected
karmic_flashplugin-nonfree: not-affected
devel_flashplugin-nonfree: not-affected