首页 / 操作系统 / Linux / Adobe Flash Player缓冲区溢出漏洞(CVE-2014-0515)
发布日期:2014-04-28 更新日期:2014-04-29受影响系统: Adobe Flash Player <= 13.0.0.201 Adobe Flash Player <= 13.0.0.182 Adobe Flash Player 11.2.202.350 描述: -------------------------------------------------------------------------------- BUGTRAQ ID: 67092 CVE(CAN) ID: CVE-2014-0515 Adobe Flash Player是一个集成的多媒体播放器。 Adobe Flash Player处理视频和图形的Pixel Bender组件存在缓冲区溢出漏洞,攻击者可利用此漏洞执行“水坑”攻击,从而在受影响应用上下文中执行任意代码。Ubuntu 14.04 下手动安装Firefox的Flash插件 http://www.linuxidc.com/Linux/2014-04/100490.htmFlash Player 13 最新正式版发布 http://www.linuxidc.com/Linux/2014-04/100919.htm <*来源:Alexander Polyakov 链接:http://www.securelist.com/en/blog/8212/New_Flash_Player_0_day_CVE_2014_0515_used_in_watering_hole_attacks https://helpx.adobe.com/security/products/flash-player/apsb14-13.html *>建议: -------------------------------------------------------------------------------- 厂商补丁: Adobe ----- Adobe已经为此发布了一个安全公告(apsb14-13)以及相应补丁: apsb14-13:Security updates available for Adobe Flash Player 链接:https://helpx.adobe.com/security/products/flash-player/apsb14-13.html 补丁下载:http://www.adobe.com/go/getflash
收藏该网址