Hi Steffen,
* Steffen Joeris <[EMAIL PROTECTED]> [2008-01-04 13:44]:
> The following CVE[0] has been issued against Adobe Flash Player.
> 
> CVE-2007-6637:
> 
> Multiple cross-site scripting (XSS) vulnerabilities in Adobe Flash
> Player allow remote attackers to inject arbitrary web script or HTML via
> a crafted SWF file, related to "pre-generated SWF files" and Adobe
> Dreamweaver CS3 or Adobe Acrobat Connect. NOTE: the asfunction: vector
> is already covered by CVE-2007-6244.1. 
> 
> Could you please check, if the debian version needs to be updated?

There is no update for this yet as described in the advisory 
by adobe:
http://www.adobe.com/support/security/advisories/apsa07-06.html

Kind regards
Nico
-- 
Nico Golde - http://www.ngolde.de - [EMAIL PROTECTED] - GPG: 0x73647CFF
For security reasons, all text in this mail is double-rot13 encrypted.

Attachment: pgp6I8L1J1jbQ.pgp
Description: PGP signature

Reply via email to