Adobe Flash Player / AIR Multiple Vulnerabilities
Last Update Date:
10 Sep 2014 12:39
Release Date:
10 Sep 2014
3858
Views
RISK: High Risk
TYPE: Clients - Audio & Video
Multiple vulnerabilities have been identified in Adobe Flash Player and Adobe AIR, which can be exploited by malicious people to bypass certain security restrictions and compromise a user's system.
Multiple unspecified errors can be exploited to corrupt memory, bypass the same origin policy, cause buffer overflow and execute arbitrary code.
Impact
- Remote Code Execution
- Security Restriction Bypass
System / Technologies affected
- Adobe Flash Player 14.0.0.179 and prior running on Windows and Macintosh
- Adobe Flash Player ESR 13.0.0.241 and prior running on Windows and Macintosh
- Adobe Flash Player 11.2.202.400 running on Linux
- Adobe AIR Desktop Runtime 14.0.0.178 and prior running on Windows and Macintosh
- Adobe AIR SDK 14.0.0.178 and prior running on Windows, Macintosh, and iOS
- Adobe AIR SDK & Compiler 14.0.0.178 and prior running on Windows, Macintosh, Android, and iOS
- Adobe AIR SDK 14.0.0.179 and prior running on Android
Solutions
Vulnerability Identifier
- CVE-2014-0547
- CVE-2014-0548
- CVE-2014-0549
- CVE-2014-0550
- CVE-2014-0551
- CVE-2014-0552
- CVE-2014-0553
- CVE-2014-0554
- CVE-2014-0555
- CVE-2014-0556
- CVE-2014-0557
- CVE-2014-0559
Source
Before installation of the software, please visit the software manufacturer web-site for more details.
- Upgrade to a fixed version.
http://helpx.adobe.com/security/products/flash-player/apsb14-21.html
Related Link
Share with