Lucene search

K
cveMitreCVE-2005-3591
HistoryNov 16, 2005 - 7:42 a.m.

CVE-2005-3591

2005-11-1607:42:00
CWE-20
mitre
web.nvd.nist.gov
35
cve-2005-3591
macromedia flash plugin
denial of service
arbitrary code execution
swf file
memory access condition
vulnerability

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.8

Confidence

High

EPSS

0.939

Percentile

99.1%

Macromedia Flash plugin (1) Flash.ocx 7.0.19.0 (Windows) and earlier and (2) libflashplayer.so before 7.0.25.0 (Unix) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via parameters to the ActionDefineFunction ActionScript call in a SWF file, which causes an improper memory access condition, a different vulnerability than CVE-2005-2628.

Affected configurations

Nvd
Node
macromediaflash_playerMatch6.0
OR
macromediaflash_playerMatch6.0.29.0
OR
macromediaflash_playerMatch6.0.40.0
OR
macromediaflash_playerMatch6.0.47.0
OR
macromediaflash_playerMatch6.0.65.0
OR
macromediaflash_playerMatch6.0.79.0
OR
macromediaflash_playerMatch7.0.19.0
OR
macromediaflash_playerMatch7.0_r19
VendorProductVersionCPE
macromediaflash_player6.0cpe:2.3:a:macromedia:flash_player:6.0:*:*:*:*:*:*:*
macromediaflash_player6.0.29.0cpe:2.3:a:macromedia:flash_player:6.0.29.0:*:*:*:*:*:*:*
macromediaflash_player6.0.40.0cpe:2.3:a:macromedia:flash_player:6.0.40.0:*:*:*:*:*:*:*
macromediaflash_player6.0.47.0cpe:2.3:a:macromedia:flash_player:6.0.47.0:*:*:*:*:*:*:*
macromediaflash_player6.0.65.0cpe:2.3:a:macromedia:flash_player:6.0.65.0:*:*:*:*:*:*:*
macromediaflash_player6.0.79.0cpe:2.3:a:macromedia:flash_player:6.0.79.0:*:*:*:*:*:*:*
macromediaflash_player7.0.19.0cpe:2.3:a:macromedia:flash_player:7.0.19.0:*:*:*:*:*:*:*
macromediaflash_player7.0_r19cpe:2.3:a:macromedia:flash_player:7.0_r19:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.8

Confidence

High

EPSS

0.939

Percentile

99.1%