Intrusion Prevention

Adobe.Flash.Player.Local.Settings.Manager.Memory.Corruption

Description

This indicates an attack attempt to exploit a Memory Corruption vulnerability in Adobe Flash Player.
The vulnerability is due to the way Adobe Flash Player's Setting Manager loads a local file. A remote attacker can exploit it to execute arbitrary code within the context of the application or possibly cause a Denial of Service condition.

Affected Products

Adobe Flash Player 10.3.183.7 and earlier versions for Windows, Macintosh, Linux and Solaris operating systems.
Adobe Flash Player 10.3.186.6 and earlier versions for Android.

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Recommended Actions

Apply the patch supplied by the vendor:
http://www.adobe.com/support/security/bulletins/apsb11-26.html

CVE References

CVE-2011-2428