Release date:
Updated on: 2013-05-19
Affected Systems:
Adobe Flash Player <= 11.7.700.169
Adobe Flash Player <= 11.2.202.280
Adobe Flash Player <= 11.1.115.54
Adobe Flash Player <= 11.1.111.50
Description:
--------------------------------------------------------------------------------
Bugtraq id: 59850
CVE (CAN) ID: CVE-2013-2728, CVE-2013-3324, CVE-2013-3325, CVE-2013-3326, CVE-2013-3327, CVE-2013-3328, CVE-2013-3329, CVE-2013-3330, CVE-2013-3331, CVE-2013-3332
Adobe Flash Player is an integrated multimedia Player. AIR is a technology developed based on the combination of network and desktop applications. It can control cloud programs on the network without having to use a browser.
Adobe Flash Player and AIR have multiple memory corruption vulnerabilities. Attackers can exploit these vulnerabilities to execute arbitrary code in the current user context.
<* Source: Mateusz Jurczyk
Ben Hawkes
Mateusz Jurczyk
Fermin Serna
Link: http://www.adobe.com/support/security/bulletins/apsb13-14.html
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Adobe
-----
Adobe has released a Security Bulletin (apsb13-14) and patches for this:
Apsb13-14: Security updates available for Adobe Flash Player
Link: http://www.adobe.com/support/security/bulletins/apsb13-14.html