Lucene search

K
freebsdFreeBSD55A528E8-9787-11E0-B24A-001B2134EF46
HistoryMay 13, 2011 - 12:00 a.m.

linux-flashplugin -- remote code execution vulnerability

2011-05-1300:00:00
vuxml.freebsd.org
18

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.97

Percentile

99.8%

Adobe Product Security Incident Response Team reports:

A critical vulnerability has been identified in Adobe Flash
Player 10.3.181.23 and earlier versions for Windows, Macintosh,
Linux and Solaris, and Adobe Flash Player 10.3.185.23 and
earlier versions for Android. This memory corruption
vulnerability (CVE-2011-2110) could cause a crash and
potentially allow an attacker to take control of the affected
system. There are reports that this vulnerability is being
exploited in the wild in targeted attacks via malicious Web
pages.

OSVersionArchitecturePackageVersionFilename
FreeBSDanynoarchlinux-flashplugin<=Β 9.0r289UNKNOWN
FreeBSDanynoarchlinux-f10-flashplugin<Β 10.3r181.26UNKNOWN

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.97

Percentile

99.8%