Lucene search

K
nessusTenable6710.PRM
HistoryMar 13, 2013 - 12:00 a.m.

Flash Player <= 10.3.183.67 / 11.6.602.171 Multiple Vulnerabilities (APSB13-09)

2013-03-1300:00:00
Tenable
www.tenable.com
14

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.027

Percentile

90.5%

Versions of Flash Player 11.x equal to or earlier than 11.6.602.171, or 10.x equal to or earlier than 10.3.183.67 are affected by multiple vulnerabilities:

  • An integer overflow error exists that could lead to code execution. (CVE-2013-0646)

  • A use-after-free error exists that could lead to code execution. (CVE-2013-0650)

  • A memory corruption error exists that could lead to code execution. (CVE-2013-1371)

  • A heap-based buffer overflow error exists that could lead to code execution. (CVE-2013-1375)

Binary data 6710.prm

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.027

Percentile

90.5%