Adobe Flash Player and AIR CVE-2012-5279 Memory Corruption Vulnerability
BID:56554
Info
Adobe Flash Player and AIR CVE-2012-5279 Memory Corruption Vulnerability
| Bugtraq ID: | 56554 |
| Class: | Unknown |
| CVE: |
CVE-2012-5279 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 06 2012 12:00AM |
| Updated: | Sep 17 2013 12:13AM |
| Credit: | Mateusz Jurczyk, Gynvael Coldwind, and Fermin Serna of the Google Security Team |
| Vulnerable: |
SuSE SUSE Linux Enterprise Desktop 11 SP2 SuSE SUSE Linux Enterprise Desktop 10 SP4 SuSE openSUSE 12.1 SuSE openSUSE 11.4 Red Hat Enterprise Linux Workstation Supplementary 6 Red Hat Enterprise Linux Supplementary 5 server Red Hat Enterprise Linux Server Supplementary 6 Red Hat Enterprise Linux Desktop Supplementary 6 Red Hat Enterprise Linux Desktop Supplementary 5 client openSUSE openSUSE 12.2 |
| Not Vulnerable: | |
Discussion
Adobe Flash Player and AIR CVE-2012-5279 Memory Corruption Vulnerability
Adobe Flash Player and AIR are prone to a remote memory-corruption vulnerability.
Attackers can exploit this issue to execute arbitrary code within the context of the user running the affected application. Failed attempts will likely cause a denial-of-service condition.
NOTE: This issue was previously covered in BID 56412 (Adobe Flash Player and AIR APSB12-24 Multiple Security Vulnerabilities) but has been given its own record to better document it.
Adobe Flash Player and AIR are prone to a remote memory-corruption vulnerability.
Attackers can exploit this issue to execute arbitrary code within the context of the user running the affected application. Failed attempts will likely cause a denial-of-service condition.
NOTE: This issue was previously covered in BID 56412 (Adobe Flash Player and AIR APSB12-24 Multiple Security Vulnerabilities) but has been given its own record to better document it.
Solution / Fix
Adobe Flash Player and AIR CVE-2012-5279 Memory Corruption Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Adobe Flash Player and AIR CVE-2012-5279 Memory Corruption Vulnerability
References:
References:
- Adobe Flash Homepage (Adobe)
- Adobe Flash Player: Multiple vulnerabilities (Gentoo)