Summary
This host is installed with Adobe Flash
Player and is prone to multiple vulnerabilities.
Impact
Successful exploitation will allow attackers
to disclose potentially sensitive information, bypass certain security restrictions, and compromise a user's system.
Impact Level: System/Application
Solution
Upgrade to Adobe Flash Player version
11.2.202.425 or later. For updates refer to
http://get.adobe.com/flashplayer
Insight
Multiple Flaws are due to,
- An out-of-bounds read error when handling Regular Expression Objects.
- Some unspecified errors.
- A use-after-free error.
- An error when the 'parseFloat' function is called on a specific datatype.
Affected
Adobe Flash Player version before
11.2.202.425 on Linux
Detection
Get the installed version with the help of
detect NVT and check the version is vulnerable or not.
References
Severity
Classification
-
CVE CVE-2014-0580, CVE-2014-0587, CVE-2014-8443, CVE-2014-9162, CVE-2014-9163, CVE-2014-9164 -
CVSS Base Score: 10.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
Related Vulnerabilities
- Adobe Acrobat and Reader PDF Handling Multiple Vulnerabilities (Linux)
- Adobe Air and Flash Player Multiple Vulnerabilities August-2011 (Windows)
- Adobe AIR Multiple Vulnerabilities -01 Feb13 (Linux)
- Adobe AIR Multiple Vulnerabilities -01 April 13 (Mac OS X)
- Adobe Acrobat Multiple Unspecified Vulnerabilities-01 Sep13 (Mac OS X)