PT-2014-3662 · Adobe+3 · Flash Player+3
Juan Vazquez
·
Published
2014-02-05
·
Updated
2024-12-20
·
CVE-2014-0497
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Adobe Flash Player versions prior to 11.7.700.261
Adobe Flash Player versions 11.8.x through 12.0.x before 12.0.0.44
Adobe Flash Player versions prior to 11.2.202.336 on Linux
Description
The issue allows remote attackers to execute arbitrary code via unspecified vectors due to an integer underflow. This can potentially lead to the execution of arbitrary code, posing a significant risk.
Recommendations
For Adobe Flash Player versions prior to 11.7.700.261, update to version 11.7.700.261 or later.
For Adobe Flash Player versions 11.8.x through 12.0.x, update to version 12.0.0.44 or later.
For Adobe Flash Player versions prior to 11.2.202.336 on Linux, update to version 11.2.202.336 or later.
Exploit
Fix
RCE
Integer Underflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Flash Player
Red Hat
Suse