Collected research
AIR Flash RCE from PWN2OWN
Adobe Patches AIR, Pwn2Own Vulnerability in Flash
Adobe shipped fixes for four critical Flash Player and AIR flaws, among them the use-after-free Vupen used at Pwn2Own. That bug was chained with a JIT spray and a sandbox escape to execute code through Flash inside Internet Explorer 11; the same update covers a buffer overflow, a security bypass and a cross-site scripting issue.
Record
- Document
- Adobe Patches AIR, Pwn2Own Vulnerability in Flash
- Researcher
- Chris Brook
- Published by
- Threatpost | The first stop for security news
- Date
- Topic
- Server
In the archive
Tags
This page is the archive's own catalogue record. The research is the work of Chris Brook, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .