CVE-2008-4473

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
17/10/2008
Last modified:
09/04/2025

Description

Multiple heap-based buffer overflows in Adobe Flash CS3 Professional on Windows and Flash MX 2004 allow remote attackers to execute arbitrary code via an SWF file containing long control parameters.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:adobe:flash_player:cs3:*:professional:*:*:*:*:*
cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:mx_2004:*:*:*:*:*:*:*