Linked by David Adams on Wed 16th Apr 2008 15:58 UTC, submitted by supergear
Privacy, Security, Encryption IBM researcher Mark Dowd has outlined a Flash vulnerability that could allow for a rare cross-platform web-based exploit. Matasano Chargen uses a Super Mario metaphor, an example we can all relate to, to illuminate it.
Thread beginning with comment 310016
To view parent comment, click here.
To read all comments associated with this story, please click here.
nelvana2005
Member since:
2005-07-29

Yes, but the swfdec project fixes bugs as soon as possible:

http://swfdec.freedesktop.org/wiki/
"2008-04-09
Our first security fix release: Swfdec 0.6.4. Please update."

"Fixes in this release:
- fix a security problem that allowed remote Flash files to read local files.
- fix a rare crash in TextField.replaceText
- fix a rare crash during cleanup."

Very interesting.

Reply Parent Bookmark Score: 1