Summary
This host is installed with Adobe Flash Player and is prone to security bypass vulnerability.
Impact
Successful exploitation will allow attackers to, bypass certain security restrictions and disclose certain memory informations.
Impact Level: System/Application
Solution
Update to Adobe Flash Player version 11.7.700.260 or 12.0.0.38 or later, For updates refer to http://get.adobe.com/flashplayer
Insight
Flaw is due to an unspecified error and other additional weakness.
Affected
Adobe Flash Player before version 11.7.700.260, 11.8.x, 11.9.x before 12.0.0.38 on Mac OS X.
Detection
Get the installed version with the help of detect NVT and check the version is vulnerable or not.
References
Severity
Classification
-
CVE CVE-2014-0491, CVE-2014-0492 -
CVSS Base Score: 10.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
Related Vulnerabilities
- Adobe Acrobat and Reader 'printSeps()' Function Heap Corruption Vulnerability
- Adobe Air Multiple Vulnerabilities -01 May 13 (Windows)
- Adobe Acrobat and Reader Multiple Vulnerabilities -July10 (Windows)
- Adobe Air Multiple Vulnerabilities June-2012 (Mac OS X)
- Adobe Acrobat and Reader PDF Handling Code Execution Vulnerability (Mac OS X)