Tuesday, September 14, 2010

Adobe Flash Player IE version 10.1.x: Insecure DLL Hijacking Vulnerability (dwmapi.dll)

Users of Adobe Flash Player IE version 10.1.x please be advised of an Insecure DLL Hijacking vulnerability (dwmapi.dll) that has been identified.

To view this vulnerability, possible remedies, and others please check out the Security Advisories at Critical Watch (http://criticalwatch.com/support/security-advisories.aspx)

Amplify’d from www.criticalwatch.com
Adobe Flash Player-SA-09/10/2010: Adobe Flash Player IE version 10.1.x - Insecure DLL Hijacking Vulnerability (dwmapi.dll)
VULNERABILITY DESCRIPTION



The Flash Player application passes an insufficiently qualified path

in loading its external libraries - "dwmapi.dll", which must be

present at user's desktop when a user visits web sites with flash

contents.
Read more at www.criticalwatch.com
 

No comments:

Post a Comment