FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2007-2022

This CVE name corresponds to:

Entered Topic
2007-07-18 linux-flashplugin -- critical vulnerabilities

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2007-2022
Phase Assigned(20070413)

Description

Adobe Macromedia Flash Player 7 and 9, when used with Opera before 9.20 or Konqueror before 20070613, allows remote attackers to obtain sensitive information (browser keystrokes), which are leaked to the Flash Player applet.

References

Source Reference
CONFIRM http://www.adobe.com/support/security/advisories/apsa07-03.html
CONFIRM http://www.opera.com/support/search/view/858/
CONFIRM http://www.adobe.com/support/security/bulletins/apsb07-12.html
CONFIRM https://issues.rpath.com/browse/RPL-1462
GENTOO GLSA-200708-01
MANDRIVA MDKSA-2007:138
REDHAT RHSA-2007:0494
SGI 20070602-01-P
SUNALERT 103167
SUNALERT 201506
SUSE SUSE-SA:2007:028
SUSE SUSE-SR:2007:012
SUSE SUSE-SA:2007:046
CERT TA07-192A
BID 23437
OVAL oval:org.mitre.oval:def:9332
VUPEN ADV-2007-1361
VUPEN ADV-2007-2497
VUPEN ADV-2007-4190
SECTRACK 1017903
SECUNIA 24877
SECUNIA 25027
SECUNIA 25432
SECUNIA 25662
SECUNIA 25669
SECUNIA 25894
SECUNIA 25933
SECUNIA 26027
SECUNIA 26118
SECUNIA 26357
SECUNIA 26860
SECUNIA 28068
XF opera-flash-player-unspecified(33595)