CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:L/Au:N/C:C/I:C/A:C
AI Score
Confidence
High
EPSS
Percentile
94.0%
Integer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2136 and CVE-2011-2138.
Vendor | Product | Version | CPE |
---|---|---|---|
adobe | flash_player | * | cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:* |
adobe | flash_player | 6.0.21.0 | cpe:2.3:a:adobe:flash_player:6.0.21.0:*:*:*:*:*:*:* |
adobe | flash_player | 6.0.79 | cpe:2.3:a:adobe:flash_player:6.0.79:*:*:*:*:*:*:* |
adobe | flash_player | 7.0 | cpe:2.3:a:adobe:flash_player:7.0:*:*:*:*:*:*:* |
adobe | flash_player | 7.0.1 | cpe:2.3:a:adobe:flash_player:7.0.1:*:*:*:*:*:*:* |
adobe | flash_player | 7.0.14.0 | cpe:2.3:a:adobe:flash_player:7.0.14.0:*:*:*:*:*:*:* |
adobe | flash_player | 7.0.19.0 | cpe:2.3:a:adobe:flash_player:7.0.19.0:*:*:*:*:*:*:* |
adobe | flash_player | 7.0.24.0 | cpe:2.3:a:adobe:flash_player:7.0.24.0:*:*:*:*:*:*:* |
adobe | flash_player | 7.0.25 | cpe:2.3:a:adobe:flash_player:7.0.25:*:*:*:*:*:*:* |
adobe | flash_player | 7.0.53.0 | cpe:2.3:a:adobe:flash_player:7.0.53.0:*:*:*:*:*:*:* |
lists.opensuse.org/opensuse-security-announce/2011-08/msg00006.html
lists.opensuse.org/opensuse-security-announce/2011-08/msg00007.html
lists.opensuse.org/opensuse-security-announce/2011-08/msg00008.html
secunia.com/advisories/48308
www.adobe.com/support/security/bulletins/apsb11-21.html
www.redhat.com/support/errata/RHSA-2011-1144.html
www.us-cert.gov/cas/techalerts/TA11-222A.html
oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14132
oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16025