VulnerabilityModified
CVE-2008-4819
Unspecified vulnerability in Adobe Flash Player 9.0.124.0 and earlier makes it easier for remote attackers to conduct DNS rebinding attacks via unknown vectors.
MEDIUM 6.8EPSS 5.24%
Does this matter?
Lower severity and a low EPSS score (5.24%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in Adobe Flash Player 9.0.124.0 and earlier makes it easier for remote attackers to conduct DNS rebinding attacks via unknown vectors.
- CVSS 2.0
- 6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 5.24% probability · 92th percentile
- CISA KEV
- Not listed
- Affected
- adobe/flash player
- Source
- cve@mitre.org
References
- http://lists.apple.com/archives/security-announce//2008//Dec/msg00000.html
- http://secunia.com/advisories/32702
- http://secunia.com/advisories/33179
- http://secunia.com/advisories/33390
- http://secunia.com/advisories/34226
- http://security.gentoo.org/glsa/glsa-200903-23.xml
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-248586-1
- http://support.apple.com/kb/HT3338
- http://support.avaya.com/elmodocs2/security/ASA-2008-440.htm
- http://support.avaya.com/elmodocs2/security/ASA-2009-020.htm
- http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&DocumentOID=834256&poid=
- http://www.adobe.com/support/security/bulletins/apsb08-20.htmlPatch, Vendor Advisory
- http://www.redhat.com/support/errata/RHSA-2008-0980.html
- http://www.securityfocus.com/bid/32129Patch
- http://www.securitytracker.com/id?1021147
- http://www.us-cert.gov/cas/techalerts/TA08-350A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2008/3444
- https://exchange.xforce.ibmcloud.com/vulnerabilities/46532
- http://lists.apple.com/archives/security-announce//2008//Dec/msg00000.html
- http://secunia.com/advisories/32702
- http://secunia.com/advisories/33179
- http://secunia.com/advisories/33390
- http://secunia.com/advisories/34226
- http://security.gentoo.org/glsa/glsa-200903-23.xml
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-248586-1
- http://support.apple.com/kb/HT3338
- http://support.avaya.com/elmodocs2/security/ASA-2008-440.htm
- http://support.avaya.com/elmodocs2/security/ASA-2009-020.htm
- http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&DocumentOID=834256&poid=
- http://www.adobe.com/support/security/bulletins/apsb08-20.htmlPatch, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.