SmartDefense Security Advisory

Adobe Flash Player Embedded Image Integer Overflow Vulnerability (APSB10-14)

Industry Reference:CVE-2010-2170.

A remote code execution vulnerability has been reported in Adobe Flash Player. The Adobe Flash Player is a multimedia and application player that renders Shockwave Flash (SWF) files. A remote attacker may exploit this vulnerability to take complete control of the affected system. This protection detects and blocks the transferring of malformed SWF files over HTTP.

Security Gateway R70/R71: A new protection is now available.
CPAI-2010-209.

Adobe Flash Player Embedded JPEG Remote Code Execution Vulnerability (APSB10-14)

Industry Reference:CVE-2010-2164.

A remote code execution vulnerability has been reported in Adobe Flash Player. The Adobe Flash Player is a multimedia and application player that renders Shockwave Flash (SWF) files. A remote attacker may exploit this vulnerability to take complete control of the affected system. This protection detects and blocks SWF files that contain malformed embedded JPEG.

Security Gateway R70/R71: A new protection is now available.
CPAI-2010-210.

Adobe Flash Player Deprecated Tag Memory Corruption Vulnerability (APSB10-14)

Industry Reference:CVE-2010-2186.

A memory corruption vulnerability has been reported in Adobe Flash Player. The Adobe Flash Player is a multimedia and application player that renders Shockwave Flash (SWF) files. A remote attacker may exploit this vulnerability to take complete control of the affected system. This protection detects and blocks malformed SWF files that contain old and deprecated tags.

Security Gateway R70/R71: A new protection is now available.
CPAI-2010-212.

Improvements have been made to the following protections:



Adobe Multiple Products authplay.dll Component Code Execution Vulnerability (APSA10-01)
http://www.checkpoint.com/defense/advisories/public/2010/cpai-09-Jun.html.

Microsoft Windows SMB Client Repeated Negotiation Responses Vulnerability (MS10-006)
CPAI-2010-003.

Microsoft Windows SMB Client Repeated Negotiation Responses Vulnerability (MS10-006)
CPAI-2010-003.

June 22, 2010

IPS Software Blade

Buy Now

Guidelines

Forums

SmartDefense Microsoft Security Resources
You have received this notification because you have subscribed to the SmartDefense mailing list. If you would prefer to no longer receive security alerts and defense notifications please click to Unsubscribe

As always, please feel free to contact us directly if you have any comments or questions.

Read Check Point's Privacy Policy
©2003.2009 Check Point Software Technologies Ltd. (Nasdaq: CHKP) All rights reserved.
800 Bridge Parkway, Redwood City, CA USA 94065