Sun Microsystems released two security updates this morning: #102932 Adobe Flash Player and #102936 NAS OS.

#102932 Adobe Flash Player May Allow Unauthorized Header Injection

This security update addresses one vulnerability in Adobe Flash Player for Solaris 10 on both SPARC and X86 platforms. An application that is viewed with Flash Player can be used to generate unauthorized HTTP requests from the affected host opening the possibility for HTTP Request Splitting attacks (CVE-2006-5330). Sun has made a patch available to resolve the issue. More information is available on SunSolve.

#102936 NAS OS File Systems may Become OFFLINE

This security update addresses one vulnerability in NAS OS 4.20 on Sun StorEdge and StorageTek systems. Disabling checkpoint may cause the file system to become OFFLINE. Sun has made a patch available to resolve the issue. More information is available on SunSolve.

Related Posts