10

CVE-2014-0536

Adobe Flash Player before 13.0.0.223 and 14.x before 14.0.0.125 on Windows and OS X and before 11.2.202.378 on Linux, Adobe AIR before 14.0.0.110, Adobe AIR SDK before 14.0.0.110, and Adobe AIR SDK & Compiler before 14.0.0.110 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AdobeFlash Player Version <= 11.2.202.359
   AdobeFlash Player Version11.2.202.223
   AdobeFlash Player Version11.2.202.228
   AdobeFlash Player Version11.2.202.233
   AdobeFlash Player Version11.2.202.235
   AdobeFlash Player Version11.2.202.236
   AdobeFlash Player Version11.2.202.238
   AdobeFlash Player Version11.2.202.243
   AdobeFlash Player Version11.2.202.251
   AdobeFlash Player Version11.2.202.258
   AdobeFlash Player Version11.2.202.261
   AdobeFlash Player Version11.2.202.262
   AdobeFlash Player Version11.2.202.270
   AdobeFlash Player Version11.2.202.273
   AdobeFlash Player Version11.2.202.275
   AdobeFlash Player Version11.2.202.280
   AdobeFlash Player Version11.2.202.285
   AdobeFlash Player Version11.2.202.291
   AdobeFlash Player Version11.2.202.297
   AdobeFlash Player Version11.2.202.310
   AdobeFlash Player Version11.2.202.332
   AdobeFlash Player Version11.2.202.335
   AdobeFlash Player Version11.2.202.336
   AdobeFlash Player Version11.2.202.341
   AdobeFlash Player Version11.2.202.346
   AdobeFlash Player Version11.2.202.350
   AdobeFlash Player Version11.2.202.356
   LinuxLinux Kernel
AdobeFlash Player Version <= 13.0.0.214
   ApplemacOS X
   MicrosoftWindows
AdobeFlash Player Version13.0.0.182
   ApplemacOS X
   MicrosoftWindows
AdobeFlash Player Version13.0.0.201
   ApplemacOS X
   MicrosoftWindows
AdobeFlash Player Version13.0.0.206
   ApplemacOS X
   MicrosoftWindows
AdobeAdobe Air Sdk Version <= 13.0.0.111
AdobeAdobe Air Sdk Version13.0.0.83
AdobeAdobe Air Version <= 13.0.0.111
AdobeAdobe Air Version13.0.0.83
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 8.65% 0.916
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.