Release date:
Updated on: 2013-01-10
Affected Systems:
Adobe Flash Player 11.x
Adobe Flash Player 10.x
Adobe AIR 3.x
Description:
--------------------------------------------------------------------------------
Bugtraq id: 57184
CVE (CAN) ID: CVE-2013-0630
Adobe Flash Player is an integrated multimedia Player. AIR is a technology developed based on the combination of network and desktop applications. It can control cloud programs on the network without having to use a browser.
Adobe Flash Player and AIR have a buffer overflow vulnerability in implementation, which can cause remote code execution.
<* Source: Mateusz Jurczyk
Gynvael Coldwind
Fermin Serna
Link: http://secunia.com/advisories/51771/
Http://www.adobe.com/support/security/advisories/apsa13-01.html
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Adobe
-----
Adobe has released a Security Bulletin (APSA13-01) and patches for this:
APSA13-01: Security Advisory for ColdFusion
Link: http://www.adobe.com/support/security/advisories/apsa13-01.html