Upstream information

CVE-2009-1870 at MITRE


Adobe Flash Player before and 10.x before, and Adobe AIR before 1.5.2, allows attackers to obtain sensitive information via vectors involving saving an SWF file to a hard drive, related to a "local sandbox vulnerability."

SUSE information

CVSS v2 Scores
  National Vulnerability Database
Base Score 4.94
Vector AV:L/AC:L/Au:N/C:C/I:N/A:N
Access Vector Local
Access Complexity Low
Authentication None
Confidentiality Impact Complete
Integrity Impact None
Availability Impact None
No SUSE Bugzilla entries cross referenced.

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
SUSE Linux Enterprise Desktop 11 GA
  • flash-player >=
SAT Patch Nr: 1149
Novell Linux Desktop 9 for x86
Novell Linux Desktop 9 for x86_64
  • flash-player >=
YOU Patch Nr: 12464
openSUSE 11.0
  • flash-player >=
openSUSE 11.1
  • flash-player >=