Lucene search

K
cveAdobeCVE-2012-0752
HistoryFeb 16, 2012 - 7:55 p.m.

CVE-2012-0752

2012-02-1619:55:01
CWE-843
adobe
web.nvd.nist.gov
127
cve-2012-0752
adobe flash player
vulnerability
arbitrary code execution
denial of service
memory corruption
type confusion

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.6

Confidence

Low

EPSS

0.017

Percentile

87.8%

Adobe Flash Player before 10.3.183.15 and 11.x before 11.1.102.62 on Windows, Mac OS X, Linux, and Solaris; before 11.1.111.6 on Android 2.x and 3.x; and before 11.1.115.6 on Android 4.x allows attackers to execute arbitrary code or cause a denial of service (memory corruption) by leveraging an unspecified β€œtype confusion.”

Affected configurations

Nvd
Node
adobeflash_playerRange<10.3.183.15
OR
adobeflash_playerRange11.0–11.1.102.62
AND
applemac_os_xMatch-
OR
linuxlinux_kernelMatch-
OR
microsoftwindowsMatch-
OR
oraclesolarisMatch--
Node
adobeflash_playerRange<11.1.111.6
AND
googleandroidRange2.0–3.2
Node
adobeflash_playerRange<11.1.115.6
AND
googleandroidMatch4.0
VendorProductVersionCPE
adobeflash_player*cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*
applemac_os_x-cpe:2.3:o:apple:mac_os_x:-:*:*:*:*:*:*:*
linuxlinux_kernel-cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
microsoftwindows-cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
oraclesolaris-cpe:2.3:o:oracle:solaris:-:*:*:*:*:*:-:*
googleandroid*cpe:2.3:o:google:android:*:*:*:*:*:*:*:*
googleandroid4.0cpe:2.3:o:google:android:4.0:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.6

Confidence

Low

EPSS

0.017

Percentile

87.8%