Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Edited by sciSpider (sch jbop) (X_X)@==(Q_Q)@

...

Recommendation

Severity

Likelihood

Remediation Cost

Priority

Level

INT02-A

2 ( medium ) 2 (

probable )

2 ( medium )

P8

L2

Related Vulnerabilities

This vulnerability in Adobe Flash arises because Flash passes a signed integer to calloc(). An attacker has control over this integer, and can send negative numbers. Since calloc() takes size_t, which is unsigned, the negative number is converted to a very large number, which is generally too big to allocate, and thus calloc() returns NULL, thus permitting the vulnerability to exist.

Search for more vulnerabilities resulting from the violation of this rule on the CERT website.

...