Summary
This host is installed with Adobe Flash
Player and is prone to multiple vulnerabilities.
Impact
Successful exploitation will allow attackers
to disclose potentially sensitive information, bypass certain security restrictions, and compromise a user's system.
Impact Level: System/Application
Solution
Upgrade to Adobe Flash Player version
13.0.0.252 or 15.0.0.223 or later. For updates refer to http://get.adobe.com/flashplayer
Insight
Multiple Flaws are due to,
- An use-after-free error.
- A double free error.
- Multiple type confusion errors.
- An error related to a permission issue.
- Multiple unspecified error.
Affected
Adobe Flash Player version before
13.0.0.252 and 14.x and 15.x before 15.0.0.223 on Mac OS X
Detection
Get the installed version with the help of
detect NVT and check the version is vulnerable or not.
References
Severity
Classification
-
CVSS Base Score: 10.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
Related Vulnerabilities
- Adobe Flash Player Arbitrary Code Execution Vulnerability - 01 Feb14 (Linux)
- Adobe Extension Manager CS5 Insecure Library Loading Vulnerability (Win)
- Adobe Acrobat Multiple Vulnerabilities - Mac OS X
- Adobe Flash Media Server multiple vulnerabilities
- Adobe Acrobat Multiple Unspecified Vulnerabilities-01 Sep13 (Windows)