Quoting from eEye's advisory on this vulnerability:
Macromedia has released an update that resolves this vulnerability in Flash Player 7.0.19.0 and earlier versions. Their description of the problem and a link to the update can be found here.
Jim
eEye Digital Security has discovered a vulnerability in Macromedia Flash Player versions 6 and 7 that will allow an attacker to run arbitrary code in the context of the logged in user. An array boundary condition may be violated by a malicious SWF file in order to redirect execution into attacker-supplied data.
Macromedia has released an update that resolves this vulnerability in Flash Player 7.0.19.0 and earlier versions. Their description of the problem and a link to the update can be found here.
Jim