Upstream information

CVE-2009-1867 at MITRE


Adobe Flash Player before and 10.x before, and Adobe AIR before 1.5.2, allows attackers to trick a user into (1) selecting a link or (2) completing a dialog, related to a "clickjacking vulnerability."

SUSE information

CVSS v2 Scores
  National Vulnerability Database
Base Score 4.30
Vector AV:N/AC:M/Au:N/C:N/I:P/A:N
Access Vector Network
Access Complexity Medium
Authentication None
Confidentiality Impact None
Integrity Impact Partial
Availability Impact None
No SUSE Bugzilla entries cross referenced.

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
SUSE Linux Enterprise Desktop 11 GA
  • flash-player >=
SAT Patch Nr: 1149
Novell Linux Desktop 9 for x86
Novell Linux Desktop 9 for x86_64
  • flash-player >=
YOU Patch Nr: 12464
openSUSE 11.0
  • flash-player >=
openSUSE 11.1
  • flash-player >=