iSEC applied targeted fuzzing to the ActionScript 2 virtual machine used by the Adobe Flash player, and identified several issues which could lead to denial of service, information disclosure or code execution when parsing a malicious SWF file. Adobe Flash Player versions 9.0.124.0 and below, AIR 1.1, Flash CS3/CS4 Professional, and Flex 3 are all affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/72196/2008-01-flash.txt
Source: https://packetstormsecurity.com/files/72196/Trustix-Secure-Linux-Security-Advisory-2008.1.html