CVE-2012-0754
גבוהה 8.1 מנוצלת בשטח (KEV)
ניצול פעיל מאומת — קטלוג CISA KEV
- שם
- Adobe Flash Player Memory Corruption Vulnerability
- נוסף לקטלוג
- יעד טיפול (פדרלי)
- פעולה נדרשת
- The impacted product is end-of-life and should be disconnected if still in use.
תיאור (מקור, אנגלית)
Adobe Flash Player before 10.3.183.15 and 11.x before 11.1.102.62 on Windows, Mac OS X, Linux, and Solaris; before 11.1.111.6 on Android 2.x and 3.x; and before 11.1.115.6 on Android 4.x allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.
מדדים
- CVSS 3.1
-
8.1 (HIGH)
מקור הציון: NVD
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 92% (אחוזון 100) נכון ל-24/7/2026
- CWE
- CWE-787
מוצרים מושפעים
adobe: flash player; apple: mac os x; linux: linux kernel; microsoft: windows; oracle: solaris; google: android
קישורים
- http://www.adobe.com/support/security/bulletins/apsb12-03.html Broken LinkPatchVendor Advisory
- http://www.adobe.com/support/security/bulletins/apsb12-03.html Broken LinkPatchVendor Advisory
- http://lists.opensuse.org/opensuse-security-announce/2012-02/msg00014.html Broken Link
- http://rhn.redhat.com/errata/RHSA-2012-0144.html Third Party Advisory
- http://secunia.com/advisories/48265 Broken Link
- http://secunia.com/advisories/48819 Broken Link
- http://security.gentoo.org/glsa/glsa-201204-07.xml Third Party Advisory
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval… Third Party Advisory
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval… Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2012-02/msg00014.html Broken Link