CVE-2020-9633
Severity CVSS v4.0:
Pending analysis
Type:
CWE-416
Use After Free
Publication date:
12/06/2020
Last modified:
16/09/2021
Description
Adobe Flash Player Desktop Runtime 32.0.0.371 and earlier, Adobe Flash Player for Google Chrome 32.0.0.371 and earlier, and Adobe Flash Player for Microsoft Edge and Internet Explorer 32.0.0.330 and earlier have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution.
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL
Base Score 2.0
10.00
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:adobe:flash_player_desktop_runtime:*:*:*:*:*:*:*:* | 32.0.0.371 (including) | |
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* | ||
cpe:2.3:a:adobe:flash_player:*:*:*:*:*:chrome:*:* | 32.0.0.371 (including) | |
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:google:chrome_os:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* | ||
cpe:2.3:a:adobe:flash_player:*:*:*:*:*:edge:*:* | 32.0.0.330 (including) | |
cpe:2.3:a:adobe:flash_player:*:*:*:*:*:internet_explorer_11:*:* | 32.0.0.330 (including) | |
cpe:2.3:o:microsoft:windows_10:*:*:*:*:*:*:*:* | ||
cpe:2.3:o:microsoft:windows_8.1:*:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page