Back

HIGH

flash-plugin: arbitrary code execution via object confusion (APSB12-09)

Published May 4, 2012

Description

Adobe Flash Player before 10.3.183.19 and 11.x before 11.2.202.235 on Windows, Mac OS X, and Linux; before 11.1.111.9 on Android 2.x and 3.x; and before 11.1.115.8 on Android 4.x allows remote attackers to execute arbitrary code via a crafted file, related to an "object confusion vulnerability," as exploited in the wild in May 2012.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (0)

No CWE recorded.

References (14)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner adobe
Published May 4, 2012
Updated Aug 6, 2024
Reserved Jan 18, 2012
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Critical
Public date May 4, 2012