CVE Vulnerabilities

CVE-2008-4822

Published: Nov 10, 2008 | Modified: Oct 30, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
LOW

Adobe Flash Player 9.0.124.0 and earlier does not properly interpret policy files, which allows remote attackers to bypass a non-root domain policy.

Affected Software

Name Vendor Start Version End Version
Flash_player Adobe * 9.0.124.0 (including)
Flash_player Adobe 7.0.69.0 (including) 7.0.69.0 (including)
Flash_player Adobe 8.0.39.0 (including) 8.0.39.0 (including)
Flash_player Adobe 9.0 (including) 9.0 (including)
Flash_player Adobe 9.0.16 (including) 9.0.16 (including)
Flash_player Adobe 9.0.18d60 (including) 9.0.18d60 (including)
Flash_player Adobe 9.0.20 (including) 9.0.20 (including)
Flash_player Adobe 9.0.20.0 (including) 9.0.20.0 (including)
Flash_player Adobe 9.0.28 (including) 9.0.28 (including)
Flash_player Adobe 9.0.28.0 (including) 9.0.28.0 (including)
Flash_player Adobe 9.0.31 (including) 9.0.31 (including)
Flash_player Adobe 9.0.31.0 (including) 9.0.31.0 (including)
Flash_player Adobe 9.0.45.0 (including) 9.0.45.0 (including)
Flash_player Adobe 9.0.47.0 (including) 9.0.47.0 (including)
Flash_player Adobe 9.0.48.0 (including) 9.0.48.0 (including)
Flash_player Adobe 9.0.112.0 (including) 9.0.112.0 (including)
Flash_player Adobe 9.0.114.0 (including) 9.0.114.0 (including)
Flash_player Adobe 9.0.115.0 (including) 9.0.115.0 (including)
Extras for RHEL 3 RedHat flash-plugin-0:9.0.151.0-1.el3.with.oss *
Extras for RHEL 4 RedHat flash-plugin-0:9.0.151.0-1.el4 *
Supplementary for Red Hat Enterprise Linux 5 RedHat flash-plugin-0:10.0.12.36-2.el5 *
Flashplugin-nonfree Ubuntu dapper *
Flashplugin-nonfree Ubuntu devel *
Flashplugin-nonfree Ubuntu gutsy *
Flashplugin-nonfree Ubuntu hardy *
Flashplugin-nonfree Ubuntu intrepid *
Flashplugin-nonfree Ubuntu jaunty *
Flashplugin-nonfree Ubuntu karmic *

References