Adobe Flash Player 8.0.39.0 and earlier, and 9.x up to 9.0.115.0, allows remote attackers to bypass the allowScriptAccess parameter setting via a crafted SWF file with unspecified Filter evasion manipulations.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Flash_player | Adobe | 8.0 (including) | 8.0.39.0 (including) |
| Flash_player | Adobe | 9.0 (including) | 9.0.115.0 (including) |
| Extras for RHEL 3 | RedHat | flash-plugin-0:9.0.124.0-1.el3.with.oss | * |
| Extras for RHEL 4 | RedHat | flash-plugin-0:9.0.124.0-1.el4 | * |
| Supplementary for Red Hat Enterprise Linux 5 | RedHat | flash-plugin-0:9.0.124.0-1.el5 | * |
| Flashplugin-nonfree | Ubuntu | dapper | * |
| Flashplugin-nonfree | Ubuntu | feisty | * |
| Flashplugin-nonfree | Ubuntu | upstream | * |