CVE-2009-0520
published 2009-02-26CVE-2009-0520: Adobe Flash Player 9.x before 9.0.159.0 and 10.x before 10.0.22.87 does not properly remove references to destroyed objects during Shockwave Flash file…
PriorityP359critical9.3CVSS 2.0
AVNACMAuNCCICAC
EXPLOIT
EPSS
28.48%
97.9th percentile
Adobe Flash Player 9.x before 9.0.159.0 and 10.x before 10.0.22.87 does not properly remove references to destroyed objects during Shockwave Flash file processing, which allows remote attackers to execute arbitrary code via a crafted file, related to a "buffer overflow issue."
Affected
35 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | air | — | — |
| adobe | flash_player | <= 10.0.12.36 | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
vendor_redhat9.3CRITICAL
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-8fmr-hfvg-xqm4: Adobe Flash Player 9
ghsa_unreviewed·2022-05-02
CVE-2009-0520 [HIGH] CWE-119 GHSA-8fmr-hfvg-xqm4: Adobe Flash Player 9
Adobe Flash Player 9.x before 9.0.159.0 and 10.x before 10.0.22.87 does not properly remove references to destroyed objects during Shockwave Flash file processing, which allows remote attackers to execute arbitrary code via a crafted file, related to a "buffer overflow issue."
Red Hat
flash-plugin: Buffer overflow (arbitrary code execution) via crafted SWF file.
vendor_redhat·2009-02-24·CVSS 9.3
CVE-2009-0520 [CRITICAL] flash-plugin: Buffer overflow (arbitrary code execution) via crafted SWF file.
flash-plugin: Buffer overflow (arbitrary code execution) via crafted SWF file.
Adobe Flash Player 9.x before 9.0.159.0 and 10.x before 10.0.22.87 does not properly remove references to destroyed objects during Shockwave Flash file processing, which allows remote attackers to execute arbitrary code via a crafted file, related to a "buffer overflow issue."
No detection rules found.
Bugzilla
CVE-2009-0520 flash-plugin: Buffer overflow (arbitrary code execution) via crafted SWF file.
bugzilla·2009-02-24·CVSS 9.3
CVE-2009-0520 [CRITICAL] CVE-2009-0520 flash-plugin: Buffer overflow (arbitrary code execution) via crafted SWF file.
CVE-2009-0520 flash-plugin: Buffer overflow (arbitrary code execution) via crafted SWF file.
A buffer overflow flaw was found in the Adobe Flash Player for Linux 10.0.12.36
that could allow attacker to execute arbitrary code on the user's
system when crafted SWF file was opened by a victim.
Discussion:
This issue now public:
http://www.adobe.com/support/security/bulletins/apsb09-01.html
---
This issue was addressed in:
Red Hat Enterprise Linux Extras:
http://rhn.redhat.com/errata/RHSA-2009-0332.html
http://rhn.redhat.com/errata/RHSA-2009-0334.html
Talos
Rule release for today - April 21st 2009
blogs_talos·2009-04-21·CVSS 10.0
CVE-2009-0520 [CRITICAL] Rule release for today - April 21st 2009
A small set of new rules in today's release and a couple of modifications. Here are the highlights:
Adobe Flash Player Buffer Overflow (CVE-2009-0520):
Adobe Flash Player contains a programming error that may allow a remote attacker to execute code on a vulnerable system via a specially crafted flash file.
A rule to detect attacks targeting this vulnerability is included in this release and is identified with GID 1, SID 15478.
Oracle BEA WebLogic Buffer Overflow (CVE-2008-5457):
Oracle BEA WebLogic contains a programming error that may allow a remote attacker to execute code on a vulnerable system.
A rule to detect attacks targeting this vulnerability is included in this release and is identified with GID 1, SID 15477.
A previously released rule identified with GID 1, SID 15263 will a
Talos
Rule release for today - April 21st 2009
blogs_talos·2009-04-21·CVSS 10.0
CVE-2009-0520 [CRITICAL] Rule release for today - April 21st 2009
## Rule release for today - April 21st 2009
A small set of new rules in today's release and a couple of modifications. Here are the highlights:
Adobe Flash Player Buffer Overflow (CVE-2009-0520): Adobe Flash Player contains a programming error that may allow a remote attacker to execute code on a vulnerable system via a specially crafted flash file.
A rule to detect attacks targeting this vulnerability is included in this release and is identified with GID 1, SID 15478.
Oracle BEA WebLogic Buffer Overflow (CVE-2008-5457): Oracle BEA WebLogic contains a programming error that may allow a remote attacker to execute code on a vulnerable system.
A rule to detect attacks targeting this vulnerability is included in this release and is identified with GID 1, SID 15477.
A previously released
http://isc.sans.org/diary.html?storyid=5929http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=773http://lists.apple.com/archives/security-announce/2009/May/msg00002.htmlhttp://rhn.redhat.com/errata/RHSA-2009-0332.htmlhttp://rhn.redhat.com/errata/RHSA-2009-0334.htmlhttp://secunia.com/advisories/34012http://secunia.com/advisories/34226http://secunia.com/advisories/34293http://secunia.com/advisories/35074http://security.gentoo.org/glsa/glsa-200903-23.xmlhttp://securitytracker.com/id?1021750http://sunsolve.sun.com/search/document.do?assetkey=1-66-254909-1http://support.apple.com/kb/HT3549http://www.adobe.com/support/security/bulletins/apsb09-01.htmlhttp://www.securityfocus.com/bid/33880http://www.us-cert.gov/cas/techalerts/TA09-133A.htmlhttp://www.vupen.com/english/advisories/2009/0513http://www.vupen.com/english/advisories/2009/0743http://www.vupen.com/english/advisories/2009/1297https://bugzilla.redhat.com/show_bug.cgi?id=487142https://exchange.xforce.ibmcloud.com/vulnerabilities/48887https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16057https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6593http://isc.sans.org/diary.html?storyid=5929http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=773http://lists.apple.com/archives/security-announce/2009/May/msg00002.htmlhttp://rhn.redhat.com/errata/RHSA-2009-0332.htmlhttp://rhn.redhat.com/errata/RHSA-2009-0334.htmlhttp://secunia.com/advisories/34012http://secunia.com/advisories/34226http://secunia.com/advisories/34293http://secunia.com/advisories/35074http://security.gentoo.org/glsa/glsa-200903-23.xmlhttp://securitytracker.com/id?1021750http://sunsolve.sun.com/search/document.do?assetkey=1-66-254909-1http://support.apple.com/kb/HT3549http://www.adobe.com/support/security/bulletins/apsb09-01.htmlhttp://www.securityfocus.com/bid/33880http://www.us-cert.gov/cas/techalerts/TA09-133A.htmlhttp://www.vupen.com/english/advisories/2009/0513http://www.vupen.com/english/advisories/2009/0743http://www.vupen.com/english/advisories/2009/1297https://bugzilla.redhat.com/show_bug.cgi?id=487142https://exchange.xforce.ibmcloud.com/vulnerabilities/48887https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16057https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6593
2009-02-26
Published