GNU GNU Flash Player 0.7.2

CPE Details

GNU GNU Flash Player 0.7.2
0.7.2
2007-08-23
19h16 +00:00
2008-04-01
13h03 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:gnu:flash_player:0.7.2:*:*:*:*:*:*:*

Informations

Vendor

gnu

Product

flash_player

Version

0.7.2

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2007-2500 2007-05-03
22h00 +00:00
server/parser/sprite_definition.cpp in GNU Gnash (aka GNU Flash Player) 0.7.2 allows remote attackers to execute arbitrary code via a large number of SHOWFRAME elements within a DEFINESPRITE element, which triggers memory corruption and enables the attacker to call free with an arbitrary address, probably resultant from a buffer overflow.
10