Naghmeh.com-Alert about Flash Player
-----Original Message-----
From: Naghmeh.com
Madrid, December 16, 2002 -- Macromedia reports a security hole in
Macromedia Flash Player and advises all users to download version
6.0.65.0, which fixes the problem.
This vulnerability lies in a buffer overflow caused when handling a
Macromedia Flash file (.SWF extension) with a malformed header. According
to the Macromedia bulletin, in order to cause a buffer overflow, the Flash
file header must be edited with a binary editor, as the Flash authoring
tool cannot generate files with this vulnerability.
This vulnerability could allow an attacker to run arbitrary code in the
victim system.
Version 6.0.65.0 of Macromedia Flash Player can be downloaded from:
http://www.macromedia.com/go/getflashplayer/