(RIM Issues Fix for BlackBerry PlayBook) Adobe Flash Player Bug Lets Remote Users Execute Arbitrary Code
|
|
SecurityTracker Alert ID: 1025681 |
|
SecurityTracker URL: http://securitytracker.com/id/1025681
|
|
CVE Reference:
CVE-2011-2110
(Links to External Site)
|
Date: Jun 21 2011
|
Impact:
Execution of arbitrary code via network, User access via network
|
Fix Available: Yes Vendor Confirmed: Yes
|
Version(s): 1.0.5.2342 and prior versions
|
Description:
A vulnerability was reported in Adobe Flash Player. A remote user can cause arbitrary code to be executed on the target user's system. BlackBerry PlayBook is affected.
A remote user can create specially crafted Flash content that, when loaded by the target user, will trigger a memory corruption error and execute arbitrary code on the target system. The code will run with the privileges of the target user.
This vulnerability is being actively exploited via targeted web pages.
|
Impact:
A remote user can create Flash content that, when loaded by the target user, will execute arbitrary code on the target user's system.
|
Solution:
RIM has issued a fix for BlackBerry PlayBook tablet software (1.0.6).
The RIM advisory is available at:
http://www.blackberry.com/btsc/KB27365
|
Cause:
Access control error
|
Underlying OS:
|
|
Message History:
This archive entry is a follow-up to the message listed below.
|
Source Message Contents
|
Date: Tue, 21 Jun 2011 13:38:15 +0000
Subject: BlackBerry Playbook
|
http://www.blackberry.com/btsc/KB27365
CVE-2011-0579
CVE-2011-0618
CVE-2011-0620
CVE-2011-0621
CVE-2011-0624
CVE-2011-0625
CVE-2011-0626
CVE-2011-2110
|
|