Lucene search

K
nessusTenable5924.PRM
HistoryMay 16, 2011 - 12:00 a.m.

Adobe Flash Media server < 3.5.6 / 4.0.2 Multiple Vulnerabilities (APSB11-11)

2011-05-1600:00:00
Tenable
www.tenable.com
20

7.6 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:N/C:C/I:C/A:C

0.335 Low

EPSS

Percentile

97.1%

The remote host is running Adobe Flash Media server.

Versions of Adobe FLash Media Server earlier than 3.5.6 or 4.0.2 are potentially affected by multiple vulnerabilities :

  • A memory corruption issue exists due to a race condition in the TLS extension code provided by the bundled version of OpenSSL. (CVE-2010-3864)

  • An unspecified error relating to processing certain XML content could lead to a denial of service. (CVE-2011-0612)

Binary data 5924.prm
VendorProductVersionCPE
adobeflash_playercpe:/a:adobe:flash_player

7.6 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:N/C:C/I:C/A:C

0.335 Low

EPSS

Percentile

97.1%