Skip to main content

Adobe Flash Player / AIR Memory Corruption Vulnerability

Last Update Date: 16 May 2013 Release Date: 15 May 2013 3693 Views

RISK: High Risk

TYPE: Clients - Audio & Video

TYPE: Audio & Video

Multiple vulnerabilities have been identified in Adobe Flash Player and Adobe AIR. A remote user can cause arbitrary code to be executed on the target user's system.

 

A remote user can create specially crafted content that, when loaded by the target user, will trigger a memory corruption error and execute arbitrary code on the target system. The code will run with the privileges of the target user.


Impact

  • Remote Code Execution

System / Technologies affected

  • Adobe Flash Player versions prior to 11.7.700.202 for Windows and Mac, 11.2.202.285 for Linux, 11.1.111.54 for Android 2.x and 3.x, 11.1.115.58 for Android 4.x, 11.7.700.202 for Google Chrome, 11.7.700.202 for IE10
  • Adobe AIR versions 3.7.0.1530 and prior for Windows and Macintosh
  • Adobe AIR versions 3.7.0.1660 and prior for Android
  • Adobe AIR SDK & Compiler versions 3.7.0.1530 and prior

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.


Vulnerability Identifier


Source


Related Link