CVE-2011-0579 – flash-plugin: crash and potential arbitrary code execution (APSB11-12)
https://notcve.org/view.php?id=CVE-2011-0579
Adobe Flash Player before 10.3.181.14 on Windows, Mac OS X, Linux, and Solaris and before 10.3.185.21 on Android allows attackers to obtain sensitive information via unspecified vectors. Adobe Flash Player antes de v10.3.181.14 en Windows, Mac OS X, Linux y Solaris, y antes de v10.3.185.21 en Android, permite a los atacantes obtener información sensible a través de vectores no especificados. • http://www.adobe.com/support/security/bulletins/apsb11-12.html https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13379 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15903 https://access.redhat.com/security/cve/CVE-2011-0579 https://bugzilla.redhat.com/show_bug.cgi?id=704368 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2011-0622 – flash-plugin: crash and potential arbitrary code execution (APSB11-12)
https://notcve.org/view.php?id=CVE-2011-0622
Adobe Flash Player before 10.3.181.14 on Windows, Mac OS X, Linux, and Solaris and before 10.3.185.21 on Android allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-0619, CVE-2011-0620, and CVE-2011-0621. Adobe Flash Player antes de v10.3.181.14 en Windows, Mac OS X, Linux y Solaris, y antes de v10.3.185.21 en Android, permite a los atacantes ejecutar código de su elección o causar una denegación de servicio (corrupción de memoria) a través de vectores no especificados, una vulnerabilidad diferente de CVE -2011-0619, CVE-2011-0620, y CVE-2011-0621. • http://lists.opensuse.org/opensuse-security-announce/2011-05/msg00006.html http://www.adobe.com/support/security/bulletins/apsb11-12.html https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14113 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16241 https://access.redhat.com/security/cve/CVE-2011-0622 https://bugzilla.redhat.com/show_bug.cgi?id=704368 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2011-0619 – flash-plugin: crash and potential arbitrary code execution (APSB11-12)
https://notcve.org/view.php?id=CVE-2011-0619
Adobe Flash Player before 10.3.181.14 on Windows, Mac OS X, Linux, and Solaris and before 10.3.185.21 on Android allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-0620, CVE-2011-0621, and CVE-2011-0622. Adobe Flash Player antes de v10.3.181.14 en Windows, Mac OS X, Linux y Solaris, y antes de v10.3.185.21 en Android, permite a los atacantes ejecutar código de su elección o causar una denegación de servicio (corrupción de memoria) a través de vectores no especificados, una vulnerabilidad diferente de CVE-2011-0620, CVE-2011-0621, and CVE-2011-0622. • http://lists.opensuse.org/opensuse-security-announce/2011-05/msg00006.html http://www.adobe.com/support/security/bulletins/apsb11-12.html https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14088 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16141 https://access.redhat.com/security/cve/CVE-2011-0619 https://bugzilla.redhat.com/show_bug.cgi?id=704368 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2011-0627 – flash-plugin: crash and potential arbitrary code execution (APSB11-12)
https://notcve.org/view.php?id=CVE-2011-0627
Adobe Flash Player before 10.3.181.14 on Windows, Mac OS X, Linux, and Solaris and before 10.3.185.21 on Android allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted Flash content, as possibly exploited in the wild in May 2011 by a Microsoft Office document with an embedded .swf file. Adobe Flash Player en versiones anteriores a v10.3.181.14 en Windows, Mac OS X, Linux y Solaris, y anteriores a v10.3.185.21 en Android, permite a atacantes remotos ejecutar código arbitrario o causar una denegación de servicio ( corrupción de memoria ) a través de contenido de Flash elaborado para ese fin, como las que fueron posiblemente explotadas en mayo 2011 por un documento de Microsoft Office con un archivo .swf incrustado. • http://lists.opensuse.org/opensuse-security-announce/2011-05/msg00006.html http://www.adobe.com/support/security/bulletins/apsb11-12.html https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13914 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16053 https://access.redhat.com/security/cve/CVE-2011-0627 https://bugzilla.redhat.com/show_bug.cgi?id=704368 • CWE-20: Improper Input Validation •
CVE-2011-0623 – flash-plugin: crash and potential arbitrary code execution (APSB11-12)
https://notcve.org/view.php?id=CVE-2011-0623
Adobe Flash Player before 10.3.181.14 on Windows, Mac OS X, Linux, and Solaris and before 10.3.185.21 on Android allows attackers to execute arbitrary code via unspecified vectors, related to a "bounds checking" issue, a different vulnerability than CVE-2011-0624, CVE-2011-0625, and CVE-2011-0626. Adobe Flash Player antes de v10.3.181.14 en Windows, Mac OS X, Linux y Solaris, y antes de v10.3.185.21 en Android permite a los atacantes ejecutar código de su elección a través de vectores no especificados, asociados a un problema de "comprobación de límites", una vulnerabilidad diferente de CVE-2011-0624, CVE-2011-0625, and CVE-2011-0626. • http://lists.opensuse.org/opensuse-security-announce/2011-05/msg00006.html http://www.adobe.com/support/security/bulletins/apsb11-12.html https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13901 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16134 https://access.redhat.com/security/cve/CVE-2011-0623 https://bugzilla.redhat.com/show_bug.cgi?id=704368 • CWE-20: Improper Input Validation •