CVE-2012-0773
Severity CVSS v4.0:
Pending analysis
Type:
CWE-787
Out-of-bounds Write
Publication date:
28/03/2012
Last modified:
11/04/2025
Description
The NetStream class in Adobe Flash Player before 10.3.183.18 and 11.x before 11.2.202.228 on Windows, Mac OS X, and Linux; Flash Player before 10.3.183.18 and 11.x before 11.2.202.223 on Solaris; Flash Player before 11.1.111.8 on Android 2.x and 3.x; and AIR before 3.2.0.2070 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.
Impact
Base Score 2.0
9.30
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:* | 10.3.183.18 (excluding) | |
| cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:* | 11.0 (including) | 11.2.202.228 (excluding) |
| cpe:2.3:o:apple:mac_os_x:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* | ||
| cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:* | 11.1.111.8 (excluding) | |
| cpe:2.3:o:google:android:-:*:*:*:*:*:*:* | ||
| cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:* | 10.3.183.18 (excluding) | |
| cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:* | 11.0 (including) | 11.2.202.223 (excluding) |
| cpe:2.3:o:oracle:solaris:-:*:*:*:*:*:-:* | ||
| cpe:2.3:a:adobe:adobe_air:*:*:*:*:*:*:*:* | 3.2.0.2070 (excluding) | |
| cpe:2.3:a:xerox:freeflow_print_server:8.0:-:*:*:*:*:*:* | ||
| cpe:2.3:a:xerox:freeflow_print_server:8.0:sp1:*:*:*:*:*:* | ||
| cpe:2.3:a:xerox:freeflow_print_server:8.0:sp2:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://lists.opensuse.org/opensuse-security-announce/2012-03/msg00017.html
- http://lists.opensuse.org/opensuse-security-announce/2012-03/msg00018.html
- http://secunia.com/advisories/48618
- http://secunia.com/advisories/48652
- http://secunia.com/advisories/48819
- http://security.gentoo.org/glsa/glsa-201204-07.xml
- http://www.adobe.com/support/security/bulletins/apsb12-07.html
- http://www.securitytracker.com/id?1026859=
- http://www.xerox.com/download/security/security-bulletin/16287-4d6b7b0c81f7b/cert_XRX13-003_v1.0.pdf
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15391
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16157
- http://lists.opensuse.org/opensuse-security-announce/2012-03/msg00017.html
- http://lists.opensuse.org/opensuse-security-announce/2012-03/msg00018.html
- http://secunia.com/advisories/48618
- http://secunia.com/advisories/48652
- http://secunia.com/advisories/48819
- http://security.gentoo.org/glsa/glsa-201204-07.xml
- http://www.adobe.com/support/security/bulletins/apsb12-07.html
- http://www.securitytracker.com/id?1026859=
- http://www.xerox.com/download/security/security-bulletin/16287-4d6b7b0c81f7b/cert_XRX13-003_v1.0.pdf
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15391
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16157



