flash-plugin: arbitrary code execution flaws (APSB14-16)
Published Jun 11, 2014
10.0
HIGHCVSS 2.0
EPSS 10.91%
Description
Adobe Flash Player before 13.0.0.223 and 14.x before 14.0.0.125 on Windows and OS X and before 11.2.202.378 on Linux, Adobe AIR before 14.0.0.110, Adobe AIR SDK before 14.0.0.110, and Adobe AIR SDK & Compiler before 14.0.0.110 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.
Affected products
No data.
Configuration 1
- ≤ 11.2.202.359
Running on/with
- 11.2.202.223
- 11.2.202.228
- 11.2.202.233
- 11.2.202.235
- 11.2.202.236
- 11.2.202.238
- 11.2.202.243
- 11.2.202.251
- 11.2.202.258
- 11.2.202.261
- 11.2.202.262
- 11.2.202.270
- 11.2.202.273
- 11.2.202.275
- 11.2.202.280
- 11.2.202.285
- 11.2.202.291
- 11.2.202.297
- 11.2.202.310
- 11.2.202.332
- 11.2.202.335
- 11.2.202.336
- 11.2.202.341
- 11.2.202.346
- 11.2.202.350
- 11.2.202.356
Running on/with
- n/a
Configuration 2
- ≤ 13.0.0.214
- 13.0.0.182
- 13.0.0.201
- 13.0.0.206
Configuration 3
- ≤ 13.0.0.111
- 13.0.0.83
No data.
Supplementary for Red Hat Enterprise Linux 5
flash-plugin-0:11.2.202.378-1.el5
Fixed · RHSA-2014:0745
Supplementary for Red Hat Enterprise Linux 6
flash-plugin-0:11.2.202.378-1.el6
Fixed · RHSA-2014:0745
| Product | Package | State | Advisory |
|---|---|---|---|
| Supplementary for Red Hat Enterprise Linux 5 | flash-plugin-0:11.2.202.378-1.el5 | Fixed | RHSA-2014:0745 |
| Supplementary for Red Hat Enterprise Linux 6 | flash-plugin-0:11.2.202.378-1.el6 | Fixed | RHSA-2014:0745 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (17)
- http://helpx.adobe.com/security/products/flash-player/apsb14-16.html x_refsource_CONFIRMPatchVendor Advisory
- http://lists.opensuse.org/opensuse-security-announce/2014-06/msg00021.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-updates/2014-06/msg00029.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-updates/2014-06/msg00030.html vendor-advisoryx_refsource_SUSE
- http://rhn.redhat.com/errata/RHSA-2014-0745.html vendor-advisoryx_refsource_REDHAT
- http://secunia.com/advisories/58390 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/58465 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/58585 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/59053 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/59304 third-party-advisoryx_refsource_SECUNIA
- http://security.gentoo.org/glsa/glsa-201406-17.xml vendor-advisoryx_refsource_GENTOO
- http://www.securityfocus.com/bid/67961 vdb-entryx_refsource_BID
- http://www.securitytracker.com/id/1030368 vdb-entryx_refsource_SECTRACK
- https://access.redhat.com/security/cve/CVE-2014-0536 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1107822 Issue Tracking
- https://nvd.nist.gov/vuln/detail/CVE-2014-0536
- https://www.cve.org/CVERecord?id=CVE-2014-0536
Change history (0)
No recorded changes yet.