PT-2014-3662 · Adobe+3 · Flash Player+3

Juan Vazquez

·

Published

2014-02-05

·

Updated

2024-12-20

·

CVE-2014-0497

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Adobe Flash Player versions prior to 11.7.700.261 Adobe Flash Player versions 11.8.x through 12.0.x before 12.0.0.44 Adobe Flash Player versions prior to 11.2.202.336 on Linux
Description The issue allows remote attackers to execute arbitrary code via unspecified vectors due to an integer underflow. This can potentially lead to the execution of arbitrary code, posing a significant risk.
Recommendations For Adobe Flash Player versions prior to 11.7.700.261, update to version 11.7.700.261 or later. For Adobe Flash Player versions 11.8.x through 12.0.x, update to version 12.0.0.44 or later. For Adobe Flash Player versions prior to 11.2.202.336 on Linux, update to version 11.2.202.336 or later.

Exploit

Fix

RCE

Integer Underflow

Weakness Enumeration

Related Identifiers

ALT-PU-2014-1155
CVE-2014-0497
MGASA-2014-0035
OPENSUSE-SU-2014_0197-1
OPENSUSE-SU-2014_0203-1
RHSA-2014:0137
RHSA-2014_0137
SUSE-SU-2014_0221-1

Affected Products

Alt Linux
Flash Player
Red Hat
Suse