Multiple vulnerabilities in Adobe Flash Player

Posted: October 10, 2012 in Vulnerabilities
Tags: , ,

Adobe FlashVulnerability: Multiple vulnerabilities in Adobe Flash Player

Danger: High
If the Patch: Yes
Number of vulnerabilities: 25

Impact: System Compromise
Affected products:

– Adobe Flash Player 11.x;
– Adobe AIR 3.x

CVE ID: CVE-2012-5248
CVE-2012-5249
CVE-2012-5250
CVE-2012-5251
CVE-2012-5253
CVE-2012-5254
CVE-2012-5255
CVE-2012-5257
CVE-2012-5259
CVE-2012-5260
CVE-2012-5262
CVE-2012-5264
CVE-2012-5265
CVE-2012-5266
CVE-2012-5252
CVE-2012-5256
CVE-2012-5258
CVE-2012-5261
CVE-2012-5263
CVE-2012-5267
CVE-2012-5268
CVE-2012-5269
CVE-2012-5270
CVE-2012-5271
CVE-2012-5272

Affected versions:

– Adobe Flash Player 11.4.402.278 for Windows, and earlier;
– Adobe Flash Player 11.4.402.265 for Macintosh, and earlier;
– Adobe Flash Player 11.2.202.238 for Linux, and earlier;
– Adobe Flash Player 11.1.115.17 for Android 4.x, and earlier;
– Adobe Flash Player 11.1.111.16 for Android 3.x and 2.x, and earlier;
– Adobe AIR 3.4.0.2540 for Windows and Macintosh, and earlier;
– Adobe AIR 3.4.0.2540 SDK, and earlier;
– Adobe AIR 3.4.0.2540 for Android, and earlier.

Description:

Which can be exploited by malicious people to compromise a vulnerable system.

Discovered multiple vulnerabilities in Adobe Flash Player and Adobe AIR, which allows a remote user to cause a buffer overflow and corrupt memory and execute arbitrary code on the target system. Vulnerability details were not disclosed.

Manufacturer URL: www.adobe.com

Solution: Install the latest version from the manufacturer.

Links:

http://www.adobe.com/support/security/bulletins/apsb12-22.html

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s