First published: Mon Dec 23 2002(Updated: )
Macromedia Flash Player before 6.0.65.0 allows remote attackers to execute arbitrary code via certain malformed data headers in Shockwave Flash file format (SWF) files, a different issue than CAN-2002-0846.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Macromedia Flash Player | =5.0_r50 | |
Macromedia Flash Player | =5.0 | |
Macromedia Flash Player | =6.0.29.0 | |
Macromedia Flash Player | =6.0 | |
Macromedia Flash Player | =4.0_r12 | |
Macromedia Flash Player | =6.0.47.0 | |
Macromedia Flash Player | =6.0.40.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-1382 is considered critical due to its potential to allow remote code execution.
To mitigate CVE-2002-1382, upgrade to Macromedia Flash Player version 6.0.65.0 or later.
CVE-2002-1382 affects various versions of Macromedia Flash Player, specifically versions 4.0_r12 through 6.0.47.0 and 6.0.29.0.
The risks of CVE-2002-1382 include the potential for attackers to execute arbitrary code on vulnerable systems.
Exploitation of CVE-2002-1382 can lead to unauthorized access or control over the affected device, which may compromise sensitive data.