PT-2012-6076 · Adobe+2 · Flash Player+4
Published
2012-12-12
·
Updated
2018-12-04
·
CVE-2012-5678
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Adobe Flash Player versions 10.3.183.48 and earlier, 11.x prior to 11.5.502.135 on Windows, 11.x prior to 11.5.502.136 on Mac OS X, 11.x prior to 11.2.202.258 on Linux, 11.1.111.29 and earlier on Android 2.x and 3.x, 11.1.115.34 and earlier on Android 4.x
Adobe AIR versions prior to 3.5.0.880 on Windows, prior to 3.5.0.890 on Mac OS X
Adobe AIR SDK versions prior to 3.5.0.880 on Windows, prior to 3.5.0.890 on Mac OS X
Description
The issue allows attackers to execute arbitrary code or cause a denial of service via unspecified vectors, resulting in memory corruption.
Recommendations
For Adobe Flash Player versions 10.3.183.48 and earlier, update to version 10.3.183.48 or later.
For Adobe Flash Player 11.x, update to version 11.5.502.135 or later on Windows, version 11.5.502.136 or later on Mac OS X, version 11.2.202.258 or later on Linux.
For Adobe Flash Player on Android 2.x and 3.x, update to version 11.1.111.29 or later.
For Adobe Flash Player on Android 4.x, update to version 11.1.115.34 or later.
For Adobe AIR, update to version 3.5.0.880 or later on Windows, version 3.5.0.890 or later on Mac OS X.
For Adobe AIR SDK, update to version 3.5.0.880 or later on Windows, version 3.5.0.890 or later on Mac OS X.
Fix
DoS
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Air
Air Sdk
Flash Player
Red Hat
Suse