Adobe Flash Player Multiple Vulnerabilities
Last Update Date:
12 Dec 2012 14:07
Release Date:
12 Dec 2012
4479
Views
RISK: High Risk
TYPE: Clients - Audio & Video
Multiple vulnerabilities have been identified in Adobe Flash Player. A remote user can create specially crafted content that, when loaded by the target user, will execute arbitrary code on the target system. The code will run with the privileges of the target user.
- A buffer overflow can trigger code execution.
- An integer overflow can trigger code execution.
- A memory corruption flaw can trigger code execution.
Impact
- Remote Code Execution
System / Technologies affected
- Adobe Flash Player 11.5.502.110 and earlier versions for Windows and Macintosh
- Adobe Flash Player 11.2.202.251 and earlier versions for Linux
- Adobe Flash Player 11.1.115.27 and earlier versions for Android 4.x
- Adobe Flash Player 11.1.111.24 and earlier versions for Android 3.x and 2.x
- Adobe AIR 3.5.0.600 and earlier versions for Windows and Macintosh, Android and SDK (includes AIR for iOS)
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- The vendor has issued a fix (11.5.502.135 for Windows, 11.5.502.136 for Mac, 11.2.202.258 for Linux, 11.1.115.34 for Android 4.x, 11.1.111.29 for Android 3.x and 2.x).
http://www.adobe.com/support/security/bulletins/apsb12-27.html
http://technet.microsoft.com/en-us/security/advisory/2755801
Vulnerability Identifier
Source
Related Link
Share with