CVE-2012-4168
flash-plugin: cross-domain information leak flaw (APSB12-19)
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Adobe Flash Player before 10.3.183.23 and 11.x before 11.4.402.265 on Windows and Mac OS X, before 10.3.183.23 and 11.x before 11.2.202.238 on Linux, before 11.1.111.16 on Android 2.x and 3.x, and before 11.1.115.17 on Android 4.x; Adobe AIR before 3.4.0.2540; and Adobe AIR SDK before 3.4.0.2540 allow remote attackers to read content from a different domain via a crafted web site.
Adobe Flash Player anterior a v11.4.402.265 en Windows y Mac OS X, anterior a v11.2.202.238 en Linux, anterior a v11.1.111.16 en Android v2.x y v3.x, y anterior a v11.1.115.17 en Android v4.x; Adobe AIR anterior a v3.4.0.2540; y Adobe AIR SDK anterior a v3.4.0.254 permite atacantes remotos leer contenido desde un dominio diferente a través de un sitio web manipulado.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2012-08-07 CVE Reserved
- 2012-08-21 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CAPEC
References (6)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.adobe.com/support/security/bulletins/apsb12-19.html | 2018-12-04 |
URL | Date | SRC |
---|---|---|
http://marc.info/?l=bugtraq&m=139455789818399&w=2 | 2018-12-04 | |
http://rhn.redhat.com/errata/RHSA-2012-1203.html | 2018-12-04 | |
http://security.gentoo.org/glsa/glsa-201209-01.xml | 2018-12-04 | |
https://access.redhat.com/security/cve/CVE-2012-4168 | 2012-08-23 | |
https://bugzilla.redhat.com/show_bug.cgi?id=850529 | 2012-08-23 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Adobe Search vendor "Adobe" | Flash Player Search vendor "Adobe" for product "Flash Player" | >= 10.3 < 10.3.183.23 Search vendor "Adobe" for product "Flash Player" and version " >= 10.3 < 10.3.183.23" | - |
Affected
| in | Apple Search vendor "Apple" | Mac Os X Search vendor "Apple" for product "Mac Os X" | - | - |
Safe
|
Adobe Search vendor "Adobe" | Flash Player Search vendor "Adobe" for product "Flash Player" | >= 10.3 < 10.3.183.23 Search vendor "Adobe" for product "Flash Player" and version " >= 10.3 < 10.3.183.23" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|
Adobe Search vendor "Adobe" | Flash Player Search vendor "Adobe" for product "Flash Player" | >= 11.4 < 11.4.402.265 Search vendor "Adobe" for product "Flash Player" and version " >= 11.4 < 11.4.402.265" | - |
Affected
| in | Apple Search vendor "Apple" | Mac Os X Search vendor "Apple" for product "Mac Os X" | - | - |
Safe
|
Adobe Search vendor "Adobe" | Flash Player Search vendor "Adobe" for product "Flash Player" | >= 11.4 < 11.4.402.265 Search vendor "Adobe" for product "Flash Player" and version " >= 11.4 < 11.4.402.265" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|
Adobe Search vendor "Adobe" | Flash Player Search vendor "Adobe" for product "Flash Player" | >= 10.3 < 10.3.183.23 Search vendor "Adobe" for product "Flash Player" and version " >= 10.3 < 10.3.183.23" | - |
Affected
| in | Linux Search vendor "Linux" | Linux Kernel Search vendor "Linux" for product "Linux Kernel" | - | - |
Safe
|
Adobe Search vendor "Adobe" | Flash Player Search vendor "Adobe" for product "Flash Player" | >= 11.2 < 11.2.202.238 Search vendor "Adobe" for product "Flash Player" and version " >= 11.2 < 11.2.202.238" | - |
Affected
| in | Linux Search vendor "Linux" | Linux Kernel Search vendor "Linux" for product "Linux Kernel" | - | - |
Safe
|
Adobe Search vendor "Adobe" | Flash Player Search vendor "Adobe" for product "Flash Player" | >= 11.1 < 11.1.111.16 Search vendor "Adobe" for product "Flash Player" and version " >= 11.1 < 11.1.111.16" | - |
Affected
| in | Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | >= 2.0 <= 2.3.7 Search vendor "Google" for product "Android" and version " >= 2.0 <= 2.3.7" | - |
Safe
|
Adobe Search vendor "Adobe" | Flash Player Search vendor "Adobe" for product "Flash Player" | >= 11.1 < 11.1.111.16 Search vendor "Adobe" for product "Flash Player" and version " >= 11.1 < 11.1.111.16" | - |
Affected
| in | Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | >= 3.0 <= 3.2.6 Search vendor "Google" for product "Android" and version " >= 3.0 <= 3.2.6" | - |
Safe
|
Adobe Search vendor "Adobe" | Flash Player Search vendor "Adobe" for product "Flash Player" | >= 11.1 < 11.1.115.17 Search vendor "Adobe" for product "Flash Player" and version " >= 11.1 < 11.1.115.17" | - |
Affected
| in | Google Search vendor "Google" | Android Search vendor "Google" for product "Android" | >= 4.0 <= 4.4.4 Search vendor "Google" for product "Android" and version " >= 4.0 <= 4.4.4" | - |
Safe
|
Adobe Search vendor "Adobe" | Air Search vendor "Adobe" for product "Air" | < 3.4.0.2540 Search vendor "Adobe" for product "Air" and version " < 3.4.0.2540" | - |
Affected
| ||||||
Adobe Search vendor "Adobe" | Air Sdk Search vendor "Adobe" for product "Air Sdk" | < 3.4.0.2540 Search vendor "Adobe" for product "Air Sdk" and version " < 3.4.0.2540" | - |
Affected
|