CVE-2007-6148: Use After Free
Use-after-free vulnerability in the Edge server in Adobe Flash Media Server 2 before 2.0.5, and Connect Enterprise Server 6 before SP3, allows remote attackers to execute arbitrary code via an unspecified sequence of Real Time Message Protocol (RTMP) requests.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-6148?
CVE-2007-6148 is considered a critical vulnerability as it allows remote attackers to execute arbitrary code.
How do I fix CVE-2007-6148?
To fix CVE-2007-6148, update Adobe Flash Media Server to version 2.0.5 or later and Adobe Connect Enterprise Server to SP3 or later.
What are the affected software versions in CVE-2007-6148?
CVE-2007-6148 affects Adobe Flash Media Server 2 versions up to and including 2.0.4 and Adobe Connect Enterprise Server 6 versions up to and including SP2.
What kind of attacks can be carried out due to CVE-2007-6148?
Attackers can exploit CVE-2007-6148 to execute arbitrary code on affected systems through crafted RTMP requests.
Is CVE-2007-6148 still a risk today?
CVE-2007-6148 poses a risk to any system still running the affected versions of Adobe Flash Media Server or Connect Enterprise Server that have not been updated.