CVE-2012-5677

Description

Integer overflow in Adobe Flash Player before 10.3.183.48 and 11.x before 11.5.502.135 on Windows, before 10.3.183.48 and 11.x before 11.5.502.136 on Mac OS X, before 10.3.183.48 and 11.x before 11.2.202.258 on Linux, before 11.1.111.29 on Android 2.x and 3.x, and before 11.1.115.34 on Android 4.x; Adobe AIR before 3.5.0.880 on Windows and before 3.5.0.890 on Mac OS X; and Adobe AIR SDK before 3.5.0.880 on Windows and before 3.5.0.890 on Mac OS X allows attackers to execute arbitrary code via unspecified vectors.

Risk Information

Base Score
9.8
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
7.927

Associated Vulnerability

VulnerabilityOS Platform
Upgrade Adobe Air 3.5.0.880 to latest versionWindows
Upgrade Adobe flash player 10.0.0.584 to latest versionWindows
Vulnerabilities CVE-2012-5676,CVE-2012-5677,CVE-2012-5678 are affected in Adobe AIR 3.5.0.880Windows
Vulnerabilities CVE-2012-5676,CVE-2012-5677,CVE-2012-5678 are affected in Adobe Flash Player Plugin 11.5.502.135Windows
Vulnerabilities CVE-2012-5676,CVE-2012-5677,CVE-2012-5678 are affected in Adobe Flash Player PPAPI 11.5.502.135Windows
Vulnerabilities CVE-2012-5676,CVE-2012-5677,CVE-2012-5678 are affected in Adobe AIR For Mac 3.5.0.879Mac
Vulnerabilities CVE-2012-5676,CVE-2012-5677,CVE-2012-5678 are affected in Adobe AIR For Mac 3.5.0.889Mac

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234