flash-plugin: multiple code execution flaws (APSB13-21)
Published Sep 11, 2013
10.0
HIGHCVSS 2.0
EPSS 5.76%
Description
Adobe Flash Player before 11.7.700.242 and 11.8.x before 11.8.800.168 on Windows and Mac OS X, before 11.2.202.310 on Linux, before 11.1.111.73 on Android 2.x and 3.x, and before 11.1.115.81 on Android 4.x; Adobe AIR before 3.8.0.1430; and Adobe AIR SDK & Compiler before 3.8.0.1430 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2013-3361, CVE-2013-3363, and CVE-2013-5324.
Affected products
No data.
Configuration 1
- ≥ 11.0 · < 11.7.700.242
- ≥ 11.8 · < 11.8.800.168
Configuration 2
- ≥ 11.0 · < 11.2.202.310
Running on/with
- n/a
Configuration 3
Configuration 4
- ≥ 11.0 · < 11.1.115.81
No data.
Supplementary for Red Hat Enterprise Linux 5
flash-plugin-0:11.2.202.310-1.el5
Fixed · RHSA-2013:1256
Supplementary for Red Hat Enterprise Linux 6
flash-plugin-0:11.2.202.310-1.el6
Fixed · RHSA-2013:1256
| Product | Package | State | Advisory |
|---|---|---|---|
| Supplementary for Red Hat Enterprise Linux 5 | flash-plugin-0:11.2.202.310-1.el5 | Fixed | RHSA-2013:1256 |
| Supplementary for Red Hat Enterprise Linux 6 | flash-plugin-0:11.2.202.310-1.el6 | Fixed | RHSA-2013:1256 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (9)
- http://lists.opensuse.org/opensuse-security-announce/2013-09/msg00001.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2013-09/msg00002.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-updates/2013-09/msg00040.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2013-1256.html vendor-advisoryx_refsource_REDHATThird Party Advisory
- http://www.adobe.com/support/security/bulletins/apsb13-21.html x_refsource_CONFIRMPatchVendor Advisory
- https://access.redhat.com/security/cve/CVE-2013-3362 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1006496 Issue Tracking
- https://nvd.nist.gov/vuln/detail/CVE-2013-3362
- https://www.cve.org/CVERecord?id=CVE-2013-3362
| Link | Providers | Tags |
|---|---|---|
| http://lists.opensuse.org/opensuse-security-announce/2013-09/msg00001.html | vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory | |
| http://lists.opensuse.org/opensuse-security-announce/2013-09/msg00002.html | vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory | |
| http://lists.opensuse.org/opensuse-updates/2013-09/msg00040.html | vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory | |
| http://rhn.redhat.com/errata/RHSA-2013-1256.html | vendor-advisoryx_refsource_REDHATThird Party Advisory | |
| http://www.adobe.com/support/security/bulletins/apsb13-21.html | x_refsource_CONFIRMPatchVendor Advisory | |
| https://access.redhat.com/security/cve/CVE-2013-3362 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=1006496 | Issue Tracking | |
| https://nvd.nist.gov/vuln/detail/CVE-2013-3362 | ||
| https://www.cve.org/CVERecord?id=CVE-2013-3362 |
Change history (0)
No recorded changes yet.