LWN.net Logo

Advertisement

E-Commerce & credit card processing - the Open Source way!

Advertise here

Package(s):flash-player CVE #(s):CVE-2006-5330
Created:December 14, 2006 Updated:December 20, 2006
Description: Adobe Flash Player versions below 7.0.69 are vulnerable to a CRLF injection. Remote attackers can modify HTTP headers in client requests in order to conduct HTTP Request Splitting attacks via CRLF sequences in arguments to the ActionScript functions XML.addRequestHeader and XML.contentType.
Alerts:
SuSE SUSE-SA:2006:077 2006-12-14

(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds
Powered by Rackspace Managed Hosting.