Accessibility

TechNote (Archived)

Security concerns and manually altered SWF files

Report of manually altered SWF files as security threat

Macromedia was informed of a potential issue with the Macromedia Flash Player, whereby a Macromedia Flash (SWF) file could be hand coded to send more information to a user's machine than the file indicates is being sent. After extensive testing and communication with the developer who initially reported this potential issue, Macromedia has found no security issue to exist. If a maliciously-coded SWF file were encountered, the effect of this "heap buffer read overflow" error would be limited to crashing a user's browser. Macromedia appreciates the support of developer community in isolating issues such as this and will continue to take any potential security issues very seriously.

Macromedia Flash Player Security

Macromedia would like to receive your comments and questions about Security with the Macromedia Flash Player. Please address comments or questions regarding the Macromedia Flash Player security to flashplayer_security@macromedia.com. Macromedia is committed to protecting customers' information.

AlertThis content requires Flash

To view this content, JavaScript must be enabled, and you need the latest version of the Adobe Flash Player.

Download the free Flash Player now!

Get Adobe Flash Player

Creative Commons License

Search Support


Document Details

ID:tn_15082

Products Affected:

flashplayer