CVE-2009-3797
flash-plugin: multiple code execution flaws (APSB09-19) (CVE-2009-3794, CVE-2009-3796, CVE-2009-3797, CVE-2009-3798, CVE-2009-3799, CVE-2009-3800)
Severity Score
9.3
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Adobe Flash Player 10.x before 10.0.42.34 and Adobe AIR before 1.5.3 might allow attackers to execute arbitrary code via unspecified vectors that trigger memory corruption.
Adobe Flash Player v10.x anteriores a v10.0.42.34 y Adobe AIR anteriores a v1.5.3 podría permitir a atacantes ejecutar código arbitrario a través de vectores que inicia una corrupción de memoria.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2009-10-26 CVE Reserved
- 2009-12-10 CVE Published
- 2024-08-07 CVE Updated
- 2024-08-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-399: Resource Management Errors
CAPEC
References (21)
URL | Tag | Source |
---|---|---|
http://secunia.com/advisories/37902 | Third Party Advisory | |
http://secunia.com/advisories/38241 | Third Party Advisory | |
http://support.apple.com/kb/HT4004 | X_refsource_confirm | |
http://www.securityfocus.com/bid/37199 | Vdb Entry | |
http://www.us-cert.gov/cas/techalerts/TA09-343A.html | Third Party Advisory | |
http://www.vupen.com/english/advisories/2010/0173 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/54633 | Vdb Entry | |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15795 | Signature | |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7140 | Signature | |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8350 | Signature |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://securitytracker.com/id?1023306 | 2017-09-19 | |
http://securitytracker.com/id?1023307 | 2017-09-19 | |
http://www.adobe.com/support/security/bulletins/apsb09-19.html | 2017-09-19 | |
http://www.redhat.com/support/errata/RHSA-2009-1657.html | 2017-09-19 | |
http://www.vupen.com/english/advisories/2009/3456 | 2017-09-19 | |
https://bugzilla.redhat.com/show_bug.cgi?id=543857 | 2009-12-09 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Adobe Search vendor "Adobe" | Adobe Air Search vendor "Adobe" for product "Adobe Air" | <= 1.5.2 Search vendor "Adobe" for product "Adobe Air" and version " <= 1.5.2" | - |
Affected
| ||||||
Adobe Search vendor "Adobe" | Adobe Air Search vendor "Adobe" for product "Adobe Air" | 1.0 Search vendor "Adobe" for product "Adobe Air" and version "1.0" | - |
Affected
| ||||||
Adobe Search vendor "Adobe" | Adobe Air Search vendor "Adobe" for product "Adobe Air" | 1.0.1 Search vendor "Adobe" for product "Adobe Air" and version "1.0.1" | - |
Affected
| ||||||
Adobe Search vendor "Adobe" | Adobe Air Search vendor "Adobe" for product "Adobe Air" | 1.1 Search vendor "Adobe" for product "Adobe Air" and version "1.1" | - |
Affected
| ||||||
Adobe Search vendor "Adobe" | Adobe Air Search vendor "Adobe" for product "Adobe Air" | 1.5.1 Search vendor "Adobe" for product "Adobe Air" and version "1.5.1" | - |
Affected
| ||||||
Adobe Search vendor "Adobe" | Flash Player Search vendor "Adobe" for product "Flash Player" | 10.0.0.584 Search vendor "Adobe" for product "Flash Player" and version "10.0.0.584" | - |
Affected
| ||||||
Adobe Search vendor "Adobe" | Flash Player Search vendor "Adobe" for product "Flash Player" | 10.0.12.10 Search vendor "Adobe" for product "Flash Player" and version "10.0.12.10" | - |
Affected
| ||||||
Adobe Search vendor "Adobe" | Flash Player Search vendor "Adobe" for product "Flash Player" | 10.0.12.36 Search vendor "Adobe" for product "Flash Player" and version "10.0.12.36" | - |
Affected
| ||||||
Adobe Search vendor "Adobe" | Flash Player Search vendor "Adobe" for product "Flash Player" | 10.0.22.87 Search vendor "Adobe" for product "Flash Player" and version "10.0.22.87" | - |
Affected
| ||||||
Adobe Search vendor "Adobe" | Flash Player Search vendor "Adobe" for product "Flash Player" | 10.0.32.18 Search vendor "Adobe" for product "Flash Player" and version "10.0.32.18" | - |
Affected
|