PT-2013-3123 · Adobe · Shockwave Player

Published

2013-04-10

·

Updated

2013-04-10

·

CVE-2013-1385

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Adobe Shockwave Player versions prior to 12.0.2.122
Description The issue allows attackers to bypass the ASLR protection mechanism, making it easier to exploit the system via unspecified vectors. This is due to the software not preventing access to address information.
Recommendations For versions prior to 12.0.2.122, update to version 12.0.2.122 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-1385

Affected Products

Shockwave Player