Executive Summary
Summary | |
---|---|
Title | Adobe Reader: Multiple vulnerabilities |
Informations | |||
---|---|---|---|
Name | GLSA-201201-19 | First vendor Publication | 2012-01-30 |
Vendor | Gentoo | Last vendor Modification | 2012-01-30 |
Severity (Vendor) | Normal | Revision | N/A |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:C/I:C/A:C) | |||
---|---|---|---|
Cvss Base Score | 10 | Attack Range | Network |
Cvss Impact Score | 10 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Synopsis Multiple vulnerabilities in Adobe Reader might allow remote attackers to execute arbitrary code or conduct various other attacks. Background Description Impact Workaround Resolution References Availability http://security.gentoo.org/glsa/glsa-201201-19.xml |
Original Source
Url : http://security.gentoo.org/glsa/glsa-201201-19.xml |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
53 % | CWE-119 | Failure to Constrain Operations within the Bounds of a Memory Buffer |
24 % | CWE-20 | Improper Input Validation |
8 % | CWE-189 | Numeric Errors (CWE/SANS Top 25) |
4 % | CWE-399 | Resource Management Errors |
4 % | CWE-264 | Permissions, Privileges, and Access Controls |
4 % | CWE-79 | Failure to Preserve Web Page Structure ('Cross-site Scripting') (CWE/SANS Top 25) |
2 % | CWE-787 | Out-of-bounds Write (CWE/SANS Top 25) |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:11819 | |||
Oval ID: | oval:org.mitre.oval:def:11819 | ||
Title: | Input validation vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code via a crafted Universal 3D (U3D) file that triggers a buffer overflow during decompression, related to "Texture bmp," a different vulnerability than CVE-2011-0590, CVE-2011-0591, CVE-2011-0593, CVE-2011-0595, and CVE-2011-0600. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0592 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:11921 | |||
Oval ID: | oval:org.mitre.oval:def:11921 | ||
Title: | Arbitrary code execution vulnerability Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | The Bitmap parsing component in 2d.dll in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code via an image with crafted (1) height and (2) width values for an RLE_8 compressed bitmap, which triggers a heap-based buffer overflow, a different vulnerability than CVE-2011-0598, CVE-2011-0599, and CVE-2011-0602. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0596 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12081 | |||
Oval ID: | oval:org.mitre.oval:def:12081 | ||
Title: | Integer overflow vulnerability in ACE.dll of Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Integer overflow in ACE.dll in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allows remote attackers to execute arbitrary code via crafted ICC data, a different vulnerability than CVE-2011-0596, CVE-2011-0599, and CVE-2011-0602. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0598 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12193 | |||
Oval ID: | oval:org.mitre.oval:def:12193 | ||
Title: | Unspecified vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Unspecified vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allows attackers to cause a denial of service or possibly execute arbitrary code via unknown vectors, a different vulnerability than CVE-2011-0565. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0585 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12217 | |||
Oval ID: | oval:org.mitre.oval:def:12217 | ||
Title: | Cross-site scripting (XSS) vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Cross-site scripting (XSS) vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2011-0604. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0587 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12248 | |||
Oval ID: | oval:org.mitre.oval:def:12248 | ||
Title: | Remote code execution vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | AcroRd32.dll in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted image that triggers an incorrect pointer calculation, leading to heap memory corruption, a different vulnerability than CVE-2011-0566 and CVE-2011-0603. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0567 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12258 | |||
Oval ID: | oval:org.mitre.oval:def:12258 | ||
Title: | Input validation vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code via a crafted Universal 3D (U3D) file that triggers a buffer overflow during decompression, a different vulnerability than CVE-2011-0590, CVE-2011-0591, CVE-2011-0592, CVE-2011-0595, and CVE-2011-0600. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0593 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12262 | |||
Oval ID: | oval:org.mitre.oval:def:12262 | ||
Title: | Library-loading vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Untrusted search path vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows allows local users to gain privileges via a Trojan horse DLL in the current working directory, a different vulnerability than CVE-2011-0562 and CVE-2011-0588. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0570 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12378 | |||
Oval ID: | oval:org.mitre.oval:def:12378 | ||
Title: | Untrusted search path vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Untrusted search path vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows allows local users to gain privileges via a Trojan horse DLL in the current working directory, a different vulnerability than CVE-2011-0562 and CVE-2011-0570. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0588 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12424 | |||
Oval ID: | oval:org.mitre.oval:def:12424 | ||
Title: | Arbitrary code execution vulnerability Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | The Bitmap parsing component in rt3d.dll in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code via a crafted image that causes an invalid pointer calculation related to 4/8-bit RLE compression, a different vulnerability than CVE-2011-0596, CVE-2011-0598, and CVE-2011-0602. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0599 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12428 | |||
Oval ID: | oval:org.mitre.oval:def:12428 | ||
Title: | Arbitrary code execution vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | The U3D component in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code via a 3D file with an invalid Parent Node count that triggers an incorrect size calculation and memory corruption, a different vulnerability than CVE-2011-0590, CVE-2011-0591, CVE-2011-0592, CVE-2011-0593, and CVE-2011-0595. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0600 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12444 | |||
Oval ID: | oval:org.mitre.oval:def:12444 | ||
Title: | Remote code execution vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code via a font. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0594 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12452 | |||
Oval ID: | oval:org.mitre.oval:def:12452 | ||
Title: | Remote code execution vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-0589 and CVE-2011-0606. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0563 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12492 | |||
Oval ID: | oval:org.mitre.oval:def:12492 | ||
Title: | Memory corruption vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted image, a different vulnerability than CVE-2011-0566 and CVE-2011-0567. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0603 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12497 | |||
Oval ID: | oval:org.mitre.oval:def:12497 | ||
Title: | Remote code execution vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-0563 and CVE-2011-0606. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0589 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12500 | |||
Oval ID: | oval:org.mitre.oval:def:12500 | ||
Title: | Arbitrary code execution vulnerability Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code via a crafted Universal 3D (U3D) file that triggers a buffer overflow during decompression, a different vulnerability than CVE-2011-0590, CVE-2011-0591, CVE-2011-0592, CVE-2011-0593, and CVE-2011-0600. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0595 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12527 | |||
Oval ID: | oval:org.mitre.oval:def:12527 | ||
Title: | Denial of service vulnerability in EScript.api plugin in Adobe Acrobat and Adobe Reader 9.4.0, 8.1.7 and other versions using a crafted PDF document | ||
Description: | The EScript.api plugin in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.1, and 8.x before 8.2.6 on Windows and Mac OS X allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PDF document that triggers memory corruption, involving the printSeps function. NOTE: some of these details are obtained from third party information. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2010-4091 | Version: | 14 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12535 | |||
Oval ID: | oval:org.mitre.oval:def:12535 | ||
Title: | Input validation vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X do not properly validate unspecified input data, which allows attackers to execute arbitrary code via unknown vectors. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0586 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12550 | |||
Oval ID: | oval:org.mitre.oval:def:12550 | ||
Title: | Stack-based buffer overflow in rt3d.dll of Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Stack-based buffer overflow in rt3d.dll in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors related to a crafted length value, a different vulnerability than CVE-2011-0563 and CVE-2011-0589. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0606 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12555 | |||
Oval ID: | oval:org.mitre.oval:def:12555 | ||
Title: | Library-loading vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Untrusted search path vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows allows local users to gain privileges via a Trojan horse DLL in the current working directory, a different vulnerability than CVE-2011-0570 and CVE-2011-0588. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0562 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12558 | |||
Oval ID: | oval:org.mitre.oval:def:12558 | ||
Title: | Input validation vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code via a crafted Universal 3D (U3D) file that triggers a buffer overflow during decompression, related to Texture and rgba, a different vulnerability than CVE-2011-0590, CVE-2011-0592, CVE-2011-0593, CVE-2011-0595, and CVE-2011-0600. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0591 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12562 | |||
Oval ID: | oval:org.mitre.oval:def:12562 | ||
Title: | Arbitrary code execution vulnerability Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code via crafted JP2K record types in a JPEG2000 image in a PDF file, which causes heap corruption, a different vulnerability than CVE-2011-0596, CVE-2011-0598, and CVE-2011-0599. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0602 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12592 | |||
Oval ID: | oval:org.mitre.oval:def:12592 | ||
Title: | Cross-site scripting (XSS) vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Cross-site scripting (XSS) vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2011-0587. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0604 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12606 | |||
Oval ID: | oval:org.mitre.oval:def:12606 | ||
Title: | Unspecified vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Unspecified vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allows attackers to cause a denial of service or possibly execute arbitrary code via unknown vectors, a different vulnerability than CVE-2011-0585. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0565 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12621 | |||
Oval ID: | oval:org.mitre.oval:def:12621 | ||
Title: | Input validation vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code via a 3D file, a different vulnerability than CVE-2011-0591, CVE-2011-0592, CVE-2011-0593, CVE-2011-0595, and CVE-2011-0600. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0590 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:12630 | |||
Oval ID: | oval:org.mitre.oval:def:12630 | ||
Title: | Remote code execution vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 | ||
Description: | Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted image, a different vulnerability than CVE-2011-0567 and CVE-2011-0603. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0566 | Version: | 12 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:13209 | |||
Oval ID: | oval:org.mitre.oval:def:13209 | ||
Title: | Heap-based buffer overflow in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2434 and CVE-2011-2437. | ||
Description: | Heap-based buffer overflow in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2434 and CVE-2011-2437. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2433 | Version: | 12 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:13217 | |||
Oval ID: | oval:org.mitre.oval:def:13217 | ||
Title: | Heap-based buffer overflow in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2433 and CVE-2011-2437. | ||
Description: | Heap-based buffer overflow in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2433 and CVE-2011-2437. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2434 | Version: | 12 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:13890 | |||
Oval ID: | oval:org.mitre.oval:def:13890 | ||
Title: | DEPRECATED: Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors. | ||
Description: | Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0605 | Version: | 12 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:13892 | |||
Oval ID: | oval:org.mitre.oval:def:13892 | ||
Title: | Multiple stack-based buffer overflows in the image-parsing library in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers to execute arbitrary code via unspecified vectors. | ||
Description: | Multiple stack-based buffer overflows in the image-parsing library in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers to execute arbitrary code via unspecified vectors. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2438 | Version: | 12 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:13940 | |||
Oval ID: | oval:org.mitre.oval:def:13940 | ||
Title: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2130, CVE-2011-2134, CVE-2011-2137, and CVE-2011-2414. | ||
Description: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2130, CVE-2011-2134, CVE-2011-2137, and CVE-2011-2414. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2415 | Version: | 27 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 Microsoft Windows Server 2008 R2 Microsoft Windows 8 Microsoft Windows Server 2012 Microsoft Windows 8.1 Microsoft Windows Server 2012 R2 | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:13979 | |||
Oval ID: | oval:org.mitre.oval:def:13979 | ||
Title: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2130, CVE-2011-2137, CVE-2011-2414, and CVE-2011-2415. | ||
Description: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2130, CVE-2011-2137, CVE-2011-2414, and CVE-2011-2415. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2134 | Version: | 27 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 Microsoft Windows Server 2008 R2 Microsoft Windows 8 Microsoft Windows Server 2012 Microsoft Windows 8.1 Microsoft Windows Server 2012 R2 | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:13984 | |||
Oval ID: | oval:org.mitre.oval:def:13984 | ||
Title: | Heap-based buffer overflow in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2433 and CVE-2011-2434. | ||
Description: | Heap-based buffer overflow in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2433 and CVE-2011-2434. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2437 | Version: | 12 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14015 | |||
Oval ID: | oval:org.mitre.oval:def:14015 | ||
Title: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2135, CVE-2011-2140, and CVE-2011-2425. | ||
Description: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2135, CVE-2011-2140, and CVE-2011-2425. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2417 | Version: | 27 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 Microsoft Windows Server 2008 R2 Microsoft Windows 8 Microsoft Windows Server 2012 Microsoft Windows 8.1 Microsoft Windows Server 2012 R2 | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14016 | |||
Oval ID: | oval:org.mitre.oval:def:14016 | ||
Title: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2140, CVE-2011-2417, and CVE-2011-2425. | ||
Description: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2140, CVE-2011-2417, and CVE-2011-2425. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2135 | Version: | 27 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 Microsoft Windows Server 2008 R2 Microsoft Windows 8 Microsoft Windows Server 2012 Microsoft Windows 8.1 Microsoft Windows Server 2012 R2 | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14022 | |||
Oval ID: | oval:org.mitre.oval:def:14022 | ||
Title: | Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers to execute arbitrary code via unspecified vectors, related to a "security bypass vulnerability." | ||
Description: | Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers to execute arbitrary code via unspecified vectors, related to a "security bypass vulnerability." | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2431 | Version: | 12 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14031 | |||
Oval ID: | oval:org.mitre.oval:def:14031 | ||
Title: | Buffer overflow in the U3D TIFF Resource in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors. | ||
Description: | Buffer overflow in the U3D TIFF Resource in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2432 | Version: | 12 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14041 | |||
Oval ID: | oval:org.mitre.oval:def:14041 | ||
Title: | Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers to execute arbitrary code via unspecified vectors, related to a "memory leakage condition vulnerability." | ||
Description: | Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers to execute arbitrary code via unspecified vectors, related to a "memory leakage condition vulnerability." | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2439 | Version: | 12 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14042 | |||
Oval ID: | oval:org.mitre.oval:def:14042 | ||
Title: | Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers to execute arbitrary code via unspecified vectors, related to a "logic error vulnerability." | ||
Description: | Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers to execute arbitrary code via unspecified vectors, related to a "logic error vulnerability." | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2442 | Version: | 12 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14043 | |||
Oval ID: | oval:org.mitre.oval:def:14043 | ||
Title: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2130, CVE-2011-2134, CVE-2011-2137, and CVE-2011-2415. | ||
Description: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2130, CVE-2011-2134, CVE-2011-2137, and CVE-2011-2415. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2414 | Version: | 27 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 Microsoft Windows Server 2008 R2 Microsoft Windows 8 Microsoft Windows Server 2012 Microsoft Windows 8.1 Microsoft Windows Server 2012 R2 | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14044 | |||
Oval ID: | oval:org.mitre.oval:def:14044 | ||
Title: | Multiple stack-based buffer overflows in CoolType.dll in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers to execute arbitrary code via unspecified vectors. | ||
Description: | Multiple stack-based buffer overflows in CoolType.dll in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers to execute arbitrary code via unspecified vectors. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2441 | Version: | 12 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14073 | |||
Oval ID: | oval:org.mitre.oval:def:14073 | ||
Title: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2135, CVE-2011-2140, and CVE-2011-2417. | ||
Description: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2135, CVE-2011-2140, and CVE-2011-2417. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2425 | Version: | 26 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 Microsoft Windows Server 2008 R2 Microsoft Windows 8 Microsoft Windows Server 2012 Microsoft Windows 8.1 Microsoft Windows Server 2012 R2 | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14074 | |||
Oval ID: | oval:org.mitre.oval:def:14074 | ||
Title: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2135, CVE-2011-2417, and CVE-2011-2425. | ||
Description: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2135, CVE-2011-2417, and CVE-2011-2425. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2140 | Version: | 26 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 Microsoft Windows Server 2008 R2 Microsoft Windows 8 Microsoft Windows Server 2012 Microsoft Windows 8.1 Microsoft Windows Server 2012 R2 | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14085 | |||
Oval ID: | oval:org.mitre.oval:def:14085 | ||
Title: | Integer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2136 and CVE-2011-2416. | ||
Description: | Integer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2136 and CVE-2011-2416. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2138 | Version: | 26 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 Microsoft Windows Server 2008 R2 Microsoft Windows 8 Microsoft Windows Server 2012 Microsoft Windows 8.1 Microsoft Windows Server 2012 R2 | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14111 | |||
Oval ID: | oval:org.mitre.oval:def:14111 | ||
Title: | Integer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2138 and CVE-2011-2416. | ||
Description: | Integer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2138 and CVE-2011-2416. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2136 | Version: | 26 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 Microsoft Windows Server 2008 R2 Microsoft Windows 8 Microsoft Windows Server 2012 Microsoft Windows 8.1 Microsoft Windows Server 2012 R2 | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14132 | |||
Oval ID: | oval:org.mitre.oval:def:14132 | ||
Title: | Integer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2136 and CVE-2011-2138. | ||
Description: | Integer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2136 and CVE-2011-2138. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2416 | Version: | 26 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 Microsoft Windows Server 2008 R2 Microsoft Windows 8 Microsoft Windows Server 2012 Microsoft Windows 8.1 Microsoft Windows Server 2012 R2 | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14143 | |||
Oval ID: | oval:org.mitre.oval:def:14143 | ||
Title: | Buffer overflow in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors. | ||
Description: | Buffer overflow in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2435 | Version: | 12 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14149 | |||
Oval ID: | oval:org.mitre.oval:def:14149 | ||
Title: | Use-after-free vulnerability in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors. | ||
Description: | Use-after-free vulnerability in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2440 | Version: | 12 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14194 | |||
Oval ID: | oval:org.mitre.oval:def:14194 | ||
Title: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2134, CVE-2011-2137, CVE-2011-2414, and CVE-2011-2415. | ||
Description: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2134, CVE-2011-2137, CVE-2011-2414, and CVE-2011-2415. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2130 | Version: | 26 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 Microsoft Windows Server 2008 R2 Microsoft Windows 8 Microsoft Windows Server 2012 Microsoft Windows 8.1 Microsoft Windows Server 2012 R2 | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14199 | |||
Oval ID: | oval:org.mitre.oval:def:14199 | ||
Title: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted SWF file, as demonstrated by "about 400 unique crash signatures." | ||
Description: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted SWF file, as demonstrated by "about 400 unique crash signatures." | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2424 | Version: | 23 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 Microsoft Windows Server 2008 R2 Microsoft Windows 8 Microsoft Windows Server 2012 Microsoft Windows 8.1 Microsoft Windows Server 2012 R2 | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14204 | |||
Oval ID: | oval:org.mitre.oval:def:14204 | ||
Title: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows remote attackers bypass the Same Origin Policy and obtain sensitive information via unspecified vectors. | ||
Description: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows remote attackers bypass the Same Origin Policy and obtain sensitive information via unspecified vectors. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2139 | Version: | 26 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 Microsoft Windows Server 2008 R2 Microsoft Windows 8 Microsoft Windows Server 2012 Microsoft Windows 8.1 Microsoft Windows Server 2012 R2 | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14206 | |||
Oval ID: | oval:org.mitre.oval:def:14206 | ||
Title: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2130, CVE-2011-2134, CVE-2011-2414, and CVE-2011-2415. | ||
Description: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2130, CVE-2011-2134, CVE-2011-2414, and CVE-2011-2415. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2137 | Version: | 26 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 Microsoft Windows Server 2008 R2 Microsoft Windows 8 Microsoft Windows Server 2012 Microsoft Windows 8.1 Microsoft Windows Server 2012 R2 | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14218 | |||
Oval ID: | oval:org.mitre.oval:def:14218 | ||
Title: | Heap-based buffer overflow in the image-parsing library in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors. | ||
Description: | Heap-based buffer overflow in the image-parsing library in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2436 | Version: | 12 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14562 | |||
Oval ID: | oval:org.mitre.oval:def:14562 | ||
Title: | Unspecified vulnerability in the U3D component in Adobe Reader and Acrobat 10.1.1 and earlier on Windows and Mac OS X, and Adobe Reader 9.x through 9.4.6 on UNIX, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unknown vectors, as exploited in the wild in December 2011. | ||
Description: | Unspecified vulnerability in the U3D component in Adobe Reader and Acrobat 10.1.1 and earlier on Windows and Mac OS X, and Adobe Reader 9.x through 9.4.6 on UNIX, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unknown vectors, as exploited in the wild in December 2011. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2462 | Version: | 14 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 | Product(s): | Adobe Reader Adobe Acrobat |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:14865 | |||
Oval ID: | oval:org.mitre.oval:def:14865 | ||
Title: | Unspecified vulnerability in the PRC component in Adobe Reader and Acrobat 9.x before 9.4.7 on Windows, Adobe Reader and Acrobat 9.x through 9.4.6 on Mac OS X, Adobe Reader and Acrobat 10.x through 10.1.1 on Windows and Mac OS X, and Adobe Reader 9.x through 9.4.6 on UNIX allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unknown vectors, as exploited in the wild in December 2011. | ||
Description: | Unspecified vulnerability in the PRC component in Adobe Reader and Acrobat 9.x before 9.4.7 on Windows, Adobe Reader and Acrobat 9.x through 9.4.6 on Mac OS X, Adobe Reader and Acrobat 10.x through 10.1.1 on Windows and Mac OS X, and Adobe Reader 9.x through 9.4.6 on UNIX allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unknown vectors, as exploited in the wild in December 2011. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-4369 | Version: | 10 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 | Product(s): | Adobe Acrobat Adobe Reader |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:15475 | |||
Oval ID: | oval:org.mitre.oval:def:15475 | ||
Title: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2135, CVE-2011-2140, and CVE-2011-2417. | ||
Description: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2135, CVE-2011-2140, and CVE-2011-2417. | ||
Family: | macos | Class: | vulnerability |
Reference(s): | CVE-2011-2425 | Version: | 3 |
Platform(s): | Apple Mac OS X | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:15869 | |||
Oval ID: | oval:org.mitre.oval:def:15869 | ||
Title: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted SWF file, as demonstrated by "about 400 unique crash signatures." | ||
Description: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted SWF file, as demonstrated by "about 400 unique crash signatures." | ||
Family: | macos | Class: | vulnerability |
Reference(s): | CVE-2011-2424 | Version: | 3 |
Platform(s): | Apple Mac OS X | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:15889 | |||
Oval ID: | oval:org.mitre.oval:def:15889 | ||
Title: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2130, CVE-2011-2134, CVE-2011-2137, and CVE-2011-2415. | ||
Description: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2130, CVE-2011-2134, CVE-2011-2137, and CVE-2011-2415. | ||
Family: | macos | Class: | vulnerability |
Reference(s): | CVE-2011-2414 | Version: | 3 |
Platform(s): | Apple Mac OS X | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:15941 | |||
Oval ID: | oval:org.mitre.oval:def:15941 | ||
Title: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2130, CVE-2011-2137, CVE-2011-2414, and CVE-2011-2415. | ||
Description: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2130, CVE-2011-2137, CVE-2011-2414, and CVE-2011-2415. | ||
Family: | macos | Class: | vulnerability |
Reference(s): | CVE-2011-2134 | Version: | 3 |
Platform(s): | Apple Mac OS X | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:15998 | |||
Oval ID: | oval:org.mitre.oval:def:15998 | ||
Title: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2135, CVE-2011-2140, and CVE-2011-2425. | ||
Description: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2135, CVE-2011-2140, and CVE-2011-2425. | ||
Family: | macos | Class: | vulnerability |
Reference(s): | CVE-2011-2417 | Version: | 3 |
Platform(s): | Apple Mac OS X | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:16025 | |||
Oval ID: | oval:org.mitre.oval:def:16025 | ||
Title: | Integer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2136 and CVE-2011-2138. | ||
Description: | Integer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2136 and CVE-2011-2138. | ||
Family: | macos | Class: | vulnerability |
Reference(s): | CVE-2011-2416 | Version: | 3 |
Platform(s): | Apple Mac OS X | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:16030 | |||
Oval ID: | oval:org.mitre.oval:def:16030 | ||
Title: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows remote attackers bypass the Same Origin Policy and obtain sensitive information via unspecified vectors. | ||
Description: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows remote attackers bypass the Same Origin Policy and obtain sensitive information via unspecified vectors. | ||
Family: | macos | Class: | vulnerability |
Reference(s): | CVE-2011-2139 | Version: | 3 |
Platform(s): | Apple Mac OS X | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:16061 | |||
Oval ID: | oval:org.mitre.oval:def:16061 | ||
Title: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2140, CVE-2011-2417, and CVE-2011-2425. | ||
Description: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2140, CVE-2011-2417, and CVE-2011-2425. | ||
Family: | macos | Class: | vulnerability |
Reference(s): | CVE-2011-2135 | Version: | 3 |
Platform(s): | Apple Mac OS X | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:16070 | |||
Oval ID: | oval:org.mitre.oval:def:16070 | ||
Title: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2130, CVE-2011-2134, CVE-2011-2137, and CVE-2011-2414. | ||
Description: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2130, CVE-2011-2134, CVE-2011-2137, and CVE-2011-2414. | ||
Family: | macos | Class: | vulnerability |
Reference(s): | CVE-2011-2415 | Version: | 3 |
Platform(s): | Apple Mac OS X | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:16104 | |||
Oval ID: | oval:org.mitre.oval:def:16104 | ||
Title: | Integer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2136 and CVE-2011-2416. | ||
Description: | Integer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2136 and CVE-2011-2416. | ||
Family: | macos | Class: | vulnerability |
Reference(s): | CVE-2011-2138 | Version: | 3 |
Platform(s): | Apple Mac OS X | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:16128 | |||
Oval ID: | oval:org.mitre.oval:def:16128 | ||
Title: | Integer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2138 and CVE-2011-2416. | ||
Description: | Integer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2138 and CVE-2011-2416. | ||
Family: | macos | Class: | vulnerability |
Reference(s): | CVE-2011-2136 | Version: | 3 |
Platform(s): | Apple Mac OS X | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:16195 | |||
Oval ID: | oval:org.mitre.oval:def:16195 | ||
Title: | DEPRECATED: Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2135, CVE-2011-2417, and CVE-2011-2425. | ||
Description: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2135, CVE-2011-2417, and CVE-2011-2425. | ||
Family: | macos | Class: | vulnerability |
Reference(s): | CVE-2011-2140 | Version: | 4 |
Platform(s): | Apple Mac OS X | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:16210 | |||
Oval ID: | oval:org.mitre.oval:def:16210 | ||
Title: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2134, CVE-2011-2137, CVE-2011-2414, and CVE-2011-2415. | ||
Description: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2134, CVE-2011-2137, CVE-2011-2414, and CVE-2011-2415. | ||
Family: | macos | Class: | vulnerability |
Reference(s): | CVE-2011-2130 | Version: | 3 |
Platform(s): | Apple Mac OS X | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:16270 | |||
Oval ID: | oval:org.mitre.oval:def:16270 | ||
Title: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2130, CVE-2011-2134, CVE-2011-2414, and CVE-2011-2415. | ||
Description: | Buffer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2130, CVE-2011-2134, CVE-2011-2414, and CVE-2011-2415. | ||
Family: | macos | Class: | vulnerability |
Reference(s): | CVE-2011-2137 | Version: | 3 |
Platform(s): | Apple Mac OS X | Product(s): | Adobe Flash Player Adobe Air |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:20865 | |||
Oval ID: | oval:org.mitre.oval:def:20865 | ||
Title: | RHSA-2012:0011: acroread security update (Critical) | ||
Description: | Unspecified vulnerability in the PRC component in Adobe Reader and Acrobat 9.x before 9.4.7 on Windows, Adobe Reader and Acrobat 9.x through 9.4.6 on Mac OS X, Adobe Reader and Acrobat 10.x through 10.1.1 on Windows and Mac OS X, and Adobe Reader 9.x through 9.4.6 on UNIX allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unknown vectors, as exploited in the wild in December 2011. | ||
Family: | unix | Class: | patch |
Reference(s): | RHSA-2012:0011-01 CVE-2011-2462 CVE-2011-4369 | Version: | 29 |
Platform(s): | Red Hat Enterprise Linux 6 Red Hat Enterprise Linux 5 | Product(s): | acroread |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:21726 | |||
Oval ID: | oval:org.mitre.oval:def:21726 | ||
Title: | RHSA-2011:0301: acroread security update (Critical) | ||
Description: | Stack-based buffer overflow in rt3d.dll in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors related to a crafted length value, a different vulnerability than CVE-2011-0563 and CVE-2011-0589. | ||
Family: | unix | Class: | patch |
Reference(s): | RHSA-2011:0301-01 CVE-2011-0562 CVE-2011-0563 CVE-2011-0565 CVE-2011-0566 CVE-2011-0567 CVE-2011-0585 CVE-2011-0586 CVE-2011-0587 CVE-2011-0589 CVE-2011-0590 CVE-2011-0591 CVE-2011-0592 CVE-2011-0593 CVE-2011-0594 CVE-2011-0595 CVE-2011-0596 CVE-2011-0598 CVE-2011-0599 CVE-2011-0600 CVE-2011-0602 CVE-2011-0603 CVE-2011-0604 CVE-2011-0606 | Version: | 302 |
Platform(s): | Red Hat Enterprise Linux 5 Red Hat Enterprise Linux 6 | Product(s): | acroread |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:21984 | |||
Oval ID: | oval:org.mitre.oval:def:21984 | ||
Title: | RHSA-2011:1144: flash-plugin security update (Critical) | ||
Description: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2135, CVE-2011-2140, and CVE-2011-2417. | ||
Family: | unix | Class: | patch |
Reference(s): | RHSA-2011:1144-01 CVE-2011-2130 CVE-2011-2134 CVE-2011-2135 CVE-2011-2136 CVE-2011-2137 CVE-2011-2138 CVE-2011-2139 CVE-2011-2140 CVE-2011-2414 CVE-2011-2415 CVE-2011-2416 CVE-2011-2417 CVE-2011-2424 CVE-2011-2425 | Version: | 185 |
Platform(s): | Red Hat Enterprise Linux 5 Red Hat Enterprise Linux 6 | Product(s): | flash-plugin |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:22268 | |||
Oval ID: | oval:org.mitre.oval:def:22268 | ||
Title: | RHSA-2010:0934: acroread security update (Critical) | ||
Description: | The EScript.api plugin in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.1, and 8.x before 8.2.6 on Windows and Mac OS X allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PDF document that triggers memory corruption, involving the printSeps function. NOTE: some of these details are obtained from third party information. | ||
Family: | unix | Class: | patch |
Reference(s): | RHSA-2010:0934-02 CVE-2010-3654 CVE-2010-4091 | Version: | 29 |
Platform(s): | Red Hat Enterprise Linux 5 Red Hat Enterprise Linux 6 | Product(s): | acroread |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:22281 | |||
Oval ID: | oval:org.mitre.oval:def:22281 | ||
Title: | DEPRECATED: ELSA-2010:0934: acroread security update (Critical) | ||
Description: | The EScript.api plugin in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.1, and 8.x before 8.2.6 on Windows and Mac OS X allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PDF document that triggers memory corruption, involving the printSeps function. NOTE: some of these details are obtained from third party information. | ||
Family: | unix | Class: | patch |
Reference(s): | ELSA-2010:0934-02 CVE-2010-3654 CVE-2010-4091 | Version: | 14 |
Platform(s): | Oracle Linux 5 Oracle Linux 6 | Product(s): | acroread |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:22835 | |||
Oval ID: | oval:org.mitre.oval:def:22835 | ||
Title: | DEPRECATED: ELSA-2011:0301: acroread security update (Critical) | ||
Description: | Stack-based buffer overflow in rt3d.dll in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors related to a crafted length value, a different vulnerability than CVE-2011-0563 and CVE-2011-0589. | ||
Family: | unix | Class: | patch |
Reference(s): | ELSA-2011:0301-01 CVE-2011-0562 CVE-2011-0563 CVE-2011-0565 CVE-2011-0566 CVE-2011-0567 CVE-2011-0585 CVE-2011-0586 CVE-2011-0587 CVE-2011-0589 CVE-2011-0590 CVE-2011-0591 CVE-2011-0592 CVE-2011-0593 CVE-2011-0594 CVE-2011-0595 CVE-2011-0596 CVE-2011-0598 CVE-2011-0599 CVE-2011-0600 CVE-2011-0602 CVE-2011-0603 CVE-2011-0604 CVE-2011-0606 | Version: | 98 |
Platform(s): | Oracle Linux 5 Oracle Linux 6 | Product(s): | acroread |
Definition Synopsis: | |||
Definition Id: oval:org.mitre.oval:def:22868 | |||
Oval ID: | oval:org.mitre.oval:def:22868 | ||
Title: | DEPRECATED: ELSA-2012:0011: acroread security update (Critical) | ||
Description: | Unspecified vulnerability in the PRC component in Adobe Reader and Acrobat 9.x before 9.4.7 on Windows, Adobe Reader and Acrobat 9.x through 9.4.6 on Mac OS X, Adobe Reader and Acrobat 10.x through 10.1.1 on Windows and Mac OS X, and Adobe Reader 9.x through 9.4.6 on UNIX allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unknown vectors, as exploited in the wild in December 2011. | ||
Family: | unix | Class: | patch |
Reference(s): | ELSA-2012:0011-01 CVE-2011-2462 CVE-2011-4369 | Version: | 13 |
Platform(s): | Oracle Linux 6 Oracle Linux 5 | Product(s): | acroread |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:23355 | |||
Oval ID: | oval:org.mitre.oval:def:23355 | ||
Title: | DEPRECATED: ELSA-2011:1144: flash-plugin security update (Critical) | ||
Description: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2135, CVE-2011-2140, and CVE-2011-2417. | ||
Family: | unix | Class: | patch |
Reference(s): | ELSA-2011:1144-01 CVE-2011-2130 CVE-2011-2134 CVE-2011-2135 CVE-2011-2136 CVE-2011-2137 CVE-2011-2138 CVE-2011-2139 CVE-2011-2140 CVE-2011-2414 CVE-2011-2415 CVE-2011-2416 CVE-2011-2417 CVE-2011-2424 CVE-2011-2425 | Version: | 62 |
Platform(s): | Oracle Linux 5 Oracle Linux 6 | Product(s): | flash-plugin |
Definition Synopsis: | |||
Definition Id: oval:org.mitre.oval:def:23512 | |||
Oval ID: | oval:org.mitre.oval:def:23512 | ||
Title: | ELSA-2011:0301: acroread security update (Critical) | ||
Description: | Stack-based buffer overflow in rt3d.dll in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors related to a crafted length value, a different vulnerability than CVE-2011-0563 and CVE-2011-0589. | ||
Family: | unix | Class: | patch |
Reference(s): | ELSA-2011:0301-01 CVE-2011-0562 CVE-2011-0563 CVE-2011-0565 CVE-2011-0566 CVE-2011-0567 CVE-2011-0585 CVE-2011-0586 CVE-2011-0587 CVE-2011-0589 CVE-2011-0590 CVE-2011-0591 CVE-2011-0592 CVE-2011-0593 CVE-2011-0594 CVE-2011-0595 CVE-2011-0596 CVE-2011-0598 CVE-2011-0599 CVE-2011-0600 CVE-2011-0602 CVE-2011-0603 CVE-2011-0604 CVE-2011-0606 | Version: | 97 |
Platform(s): | Oracle Linux 5 Oracle Linux 6 | Product(s): | acroread |
Definition Synopsis: | |||
Definition Id: oval:org.mitre.oval:def:23656 | |||
Oval ID: | oval:org.mitre.oval:def:23656 | ||
Title: | ELSA-2010:0934: acroread security update (Critical) | ||
Description: | The EScript.api plugin in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.1, and 8.x before 8.2.6 on Windows and Mac OS X allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PDF document that triggers memory corruption, involving the printSeps function. NOTE: some of these details are obtained from third party information. | ||
Family: | unix | Class: | patch |
Reference(s): | ELSA-2010:0934-02 CVE-2010-3654 CVE-2010-4091 | Version: | 13 |
Platform(s): | Oracle Linux 5 Oracle Linux 6 | Product(s): | acroread |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:23694 | |||
Oval ID: | oval:org.mitre.oval:def:23694 | ||
Title: | ELSA-2012:0011: acroread security update (Critical) | ||
Description: | Unspecified vulnerability in the PRC component in Adobe Reader and Acrobat 9.x before 9.4.7 on Windows, Adobe Reader and Acrobat 9.x through 9.4.6 on Mac OS X, Adobe Reader and Acrobat 10.x through 10.1.1 on Windows and Mac OS X, and Adobe Reader 9.x through 9.4.6 on UNIX allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unknown vectors, as exploited in the wild in December 2011. | ||
Family: | unix | Class: | patch |
Reference(s): | ELSA-2012:0011-01 CVE-2011-2462 CVE-2011-4369 | Version: | 13 |
Platform(s): | Oracle Linux 6 Oracle Linux 5 | Product(s): | acroread |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:23730 | |||
Oval ID: | oval:org.mitre.oval:def:23730 | ||
Title: | ELSA-2011:1144: flash-plugin security update (Critical) | ||
Description: | Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2135, CVE-2011-2140, and CVE-2011-2417. | ||
Family: | unix | Class: | patch |
Reference(s): | ELSA-2011:1144-01 CVE-2011-2130 CVE-2011-2134 CVE-2011-2135 CVE-2011-2136 CVE-2011-2137 CVE-2011-2138 CVE-2011-2139 CVE-2011-2140 CVE-2011-2414 CVE-2011-2415 CVE-2011-2416 CVE-2011-2417 CVE-2011-2424 CVE-2011-2425 | Version: | 61 |
Platform(s): | Oracle Linux 5 Oracle Linux 6 | Product(s): | flash-plugin |
Definition Synopsis: | |||
CPE : Common Platform Enumeration
SAINT Exploits
Description | Link |
---|---|
Adobe Flash Player MP4 Sequence Parameter Set Processing | More info here |
Adobe Reader U3D Heap Overflow | More info here |
ExploitDB Exploits
id | Description |
---|---|
2012-02-10 | Adobe Flash Player MP4 SequenceParameterSetNALUnit Buffer Overflow |
2012-01-31 | Adobe Flash Player MP4 SequenceParameterSetNALUnit Remote Code Execution Exploit |
2012-01-14 | Adobe Reader U3D Memory Corruption Vulnerability |
OpenVAS Exploits
Date | Description |
---|---|
2012-08-02 | Name : SuSE Update for acroread openSUSE-SU-2012:0087-1 (acroread) File : nvt/gb_suse_2012_0087_1.nasl |
2012-02-12 | Name : FreeBSD Ports: acroread9 File : nvt/freebsd_acroread9.nasl |
2012-02-12 | Name : Gentoo Security Advisory GLSA 201201-19 (acroread) File : nvt/glsa_201201_19.nasl |
2012-02-12 | Name : Gentoo Security Advisory GLSA 201110-11 (Adobe Flash Player) File : nvt/glsa_201110_11.nasl |
2011-12-09 | Name : Adobe Reader/Acrobat 'U3D' Component Memory Corruption Vulnerability - Mac OS X File : nvt/gb_adobe_prdts_u3d_mem_crptn_vuln_macosx.nasl |
2011-12-09 | Name : Adobe Reader/Acrobat 'U3D' Component Memory Corruption Vulnerability - Windows File : nvt/gb_adobe_prdts_u3d_mem_crptn_vuln_win.nasl |
2011-12-09 | Name : Adobe Reader 'U3D' Component Memory Corruption Vulnerability - Linux File : nvt/gb_adobe_reader_u3d_mem_crptn_vuln_lin.nasl |
2011-12-05 | Name : SuSE Update for acroread SUSE-SA:2011:044 File : nvt/gb_suse_2011_044.nasl |
2011-10-28 | Name : Adobe Reader and Acrobat Multiple Vulnerabilities September-2011 (Mac OS X) File : nvt/gb_adobe_prdts_mult_vuln_sep11_macosx.nasl |
2011-10-28 | Name : Adobe Reader and Acrobat Multiple Vulnerabilities September-2011 (Windows) File : nvt/gb_adobe_prdts_mult_vuln_sep11_win.nasl |
2011-10-28 | Name : Adobe Reader Multiple Vulnerabilities September-2011 (Linux) File : nvt/gb_adobe_reader_mult_vuln_sep11_lin.nasl |
2011-09-21 | Name : FreeBSD Ports: linux-flashplugin File : nvt/freebsd_linux-flashplugin18.nasl |
2011-08-31 | Name : Adobe Flash Player Multiple Vulnerabilities August-2011 (Linux) File : nvt/secpod_adobe_flash_player_mult_vuln_aug11_lin.nasl |
2011-08-31 | Name : Adobe Air and Flash Player Multiple Vulnerabilities August-2011 (Windows) File : nvt/secpod_adobe_prdts_mult_vuln_aug11_win.nasl |
2011-08-31 | Name : Adobe Air and Flash Player Multiple Vulnerabilities (Mac OS X) File : nvt/secpod_adobe_prdts_mult_vuln_macosx.nasl |
2011-06-03 | Name : SuSE Update for flash-player SUSE-SA:2011:025 File : nvt/gb_suse_2011_025.nasl |
2011-03-15 | Name : SuSE Update for acroread SUSE-SA:2011:011 File : nvt/gb_suse_2011_011.nasl |
2011-03-09 | Name : Gentoo Security Advisory GLSA 201101-08 (acroread) File : nvt/glsa_201101_08.nasl |
2011-02-15 | Name : Adobe Reader Multiple Vulnerabilities February-2011 (Linux) File : nvt/gb_adobe_reader_mult_vuln_feb11_lin.nasl |
2011-02-15 | Name : Adobe Reader and Acrobat Multiple Vulnerabilities February-2011 (Windows) File : nvt/gb_adobe_prdts_mult_vuln_feb11_win.nasl |
2011-01-04 | Name : SuSE Update for acoread SUSE-SA:2010:058 File : nvt/gb_suse_2010_058.nasl |
2010-11-23 | Name : Adobe Reader 'printSeps()' Function Heap Corruption Vulnerability File : nvt/gb_adobe_reader_printseps_mem_crptn_vuln_lin.nasl |
2010-11-23 | Name : Adobe Acrobat and Reader 'printSeps()' Function Heap Corruption Vulnerability File : nvt/gb_adobe_prdts_printseps_mem_crptn_vuln_win.nasl |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
78026 | Adobe Reader / Acrobat PRC Component Remote Memory Corruption A memory corruption flaw exists in Adobe Reader and Acrobat. The PRC component fails to sanitize user-supplied input when handling certain data, resulting in memory corruption. With a specially crafted PDF file, a context-dependent attacker can execute arbitrary code. |
77529 | Adobe Reader / Acrobat U3D Data Handling Remote Memory Corruption A memory corruption flaw exists in Adobe Reader and Acrobat . The program fails to sanitize user-supplied input when handling U3D data, resulting in memory corruption. With a specially crafted PDF file, a context-dependent attacker can execute arbitrary code. |
75441 | Adobe Reader / Acrobat CoolType.dll Multiple Unspecified Overflows |
75440 | Adobe Reader / Acrobat Logic Error Unspecified Memory Corruption |
75439 | Adobe Reader / Acrobat Use-after-free PDF Embedded JPG File Handling Remote C... |
75438 | Adobe Reader / Acrobat Memory Leakage Condition Unspecified Remote Code Execu... |
75437 | Adobe Reader / Acrobat Image Parsing Library Multiple Unspecified Overflow |
75436 | Adobe Reader / Acrobat Unspecified Overflow (2011-2437) |
75435 | Adobe Reader / Acrobat Image Parsing Library Unspecified Overflow |
75434 | Adobe Reader / Acrobat Unspecified Overflow (2011-2435) |
75433 | Adobe Reader / Acrobat Unspecified Overflow (2011-2434) |
75432 | Adobe Reader / Acrobat Unspecified Overflow (2011-2433) |
75431 | Adobe Reader / Acrobat U3D TIFF Resource Handling Overflow |
75430 | Adobe Reader / Acrobat Unspecified Security Bypass Remote Code Execution |
75201 | Adobe Flash Player SWF File Handling Arbitrary Code Execution (400 Taviso Bugs) |
74444 | Adobe Flash Player Unspecified Memory Corruption (2011-2425) A memory corruption flaw exists in Adobe Flash Player. The program fails to sanitize user-supplied input, resulting in memory corruption. With a specially crafted file, a context-dependent attacker can execute arbitrary code. |
74443 | Adobe Flash Player Unspecified Memory Corruption (2011-2417) A memory corruption flaw exists in Adobe Flash Player. The program fails to sanitize user-supplied input, resulting in memory corruption. With a specially crafted file, a context-dependent attacker can execute arbitrary code. |
74442 | Adobe Flash Player Unspecified Overflow (2011-2416) Adobe Flash Player is prone to an overflow condition. The program fails to properly sanitize user-supplied input resulting in an integer overflow. With a specially crafted file, a context-dependent attacker can potentially execute arbitrary code. |
74441 | Adobe Flash Player Unspecified Overflow (2011-2415) Adobe Flash Player is prone to an overflow condition. The program fails to properly sanitize user-supplied input resulting in a buffer overflow. With a specially crafted file, a context-dependent attacker can potentially execute arbitrary code. |
74440 | Adobe Flash Player Unspecified Overflow (2011-2414) Adobe Flash Player is prone to an overflow condition. The program fails to properly sanitize user-supplied input resulting in a buffer overflow. With a specially crafted file, a context-dependent attacker can potentially execute arbitrary code. |
74439 | Adobe Flash Player Unspecified Memory Corruption (2011-2140) A memory corruption flaw exists in Adobe Flash Player. The program fails to sanitize user-supplied input, resulting in memory corruption. With a specially crafted file, a context-dependent attacker can execute arbitrary code. |
74438 | Adobe Flash Player Unspecified Cross-domain Information Disclosure |
74437 | Adobe Flash Player BitmapData.scroll Handling Remote Overflow Adobe Flash Player is prone to an overflow condition. The program fails to properly sanitize user-supplied input resulting in an integer overflow. With a specially crafted file, a context-dependent attacker can potentially execute arbitrary code. |
74436 | Adobe Flash Player Unspecified Overflow (2011-2137) Adobe Flash Player is prone to an overflow condition. The program fails to properly sanitize user-supplied input resulting in a buffer overflow. With a specially crafted file, a context-dependent attacker can potentially execute arbitrary code. |
74435 | Adobe Flash Player Unspecified Overflow (2011-2136) Adobe Flash Player is prone to an overflow condition. The program fails to properly sanitize user-supplied input resulting in an integer overflow. With a specially crafted file, a context-dependent attacker can potentially execute arbitrary code. |
74434 | Adobe Flash Player flash.display Memory Corruption A memory corruption flaw exists in Adobe Flash Player. The program fails to sanitize user-supplied input, resulting in memory corruption. With a specially crafted file, a context-dependent attacker can execute arbitrary code. |
74433 | Adobe Flash Player Unspecified Overflow (2011-2134) Adobe Flash Player is prone to an overflow condition. The program fails to properly sanitize user-supplied input resulting in a buffer overflow. With a specially crafted file, a context-dependent attacker can potentially execute arbitrary code. |
74432 | Adobe Flash Player Unspecified Overflow (2011-2130) Adobe Flash Player is prone to an overflow condition. The program fails to properly sanitize user-supplied input resulting in a buffer overflow. With a specially crafted file, a context-dependent attacker can potentially execute arbitrary code. |
72501 | Adobe Reader / Acrobat U3D Texture Parser ILBM Handling Overflow Adobe Reader and Acrobat are prone to an overflow condition. The program's implementation of an image format supported by the Universal 3D compressed file format fails to properly sanitize user-supplied input resulting in a buffer overflow. With a specially crafted Universal 3D (U3D) file, a context-dependent attacker can potentially execute arbitrary code. |
71399 | Adobe Reader / Acrobat Unspecified DoS (2011-0565) Adobe Reader and Acrobat contain an unspecified flaw that may allow an attacker to cause a denial of service. It is possible, though not confirmed, that this vulnerability may also allow the execution of arbitrary code. No further details have been provided. |
71398 | Adobe Reader / Acrobat Unspecified Image Handling Memory Corruption Code Exec... A memory corruption flaw exists in Adobe Reader and Acrobat. The programs fail to sanitize user-supplied input when parsing certain images, resulting in memory corruption. With a specially crafted image file, a context-dependent attacker can execute arbitrary code. |
71397 | Adobe Reader / Acrobat AcroRd32.dll memset Memory Corruption Remote Code Exec... A memory corruption flaw exists in Adobe Reader and Acrobat. The AcroRd32.dll component fails to sanitize user-supplied input calculating a pointer while passing it to memset, resulting in memory corruption. With a specially crafted image, a context-dependent attacker can execute arbitrary code. |
71395 | Adobe Reader / Acrobat Unspecified DoS (2011-0585) Adobe Reader and Acrobat contain an unspecified flaw that may allow a context-dependent attacker to cause an infinite loop condition, resulting in a denial of service. No further details have been provided. |
71394 | Adobe Reader / Acrobat Unspecified Code Execution (2011-0586) Adobe Reader and Acrobat fail to properly validate certain unspecified input data, which may allow an attacker to execute arbitrary code. No further details have been provided. |
71393 | Adobe Reader / Acrobat Unspecified XSS (2011-0587) Adobe Reader and Acrobat contain a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the applications do not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server. |
71392 | Adobe Reader / Acrobat Unspecified Library Loading Code Execution (2011-0588) Adobe Reader and Acrobat are prone to a flaw in the way they load dynamic-link libraries (DLL). The program uses a fixed path to look for specific files or libraries. This path includes directories that may not be trusted or under user control. By placing a custom version of the file or library in the path, the program will load it before the legitimate version. This allows an attacker to inject custom code that will be run with the privilege of the program or user executing the program. This can be done by tricking a user into opening a file from the local file system or a USB drive in some cases. This attack can be leveraged remotely in some cases by placing the malicious file or library on a network share or extracted archive downloaded from a remote source. |
71391 | Adobe Reader / Acrobat Unspecified Memory Corruption Code Execution (2011-0589) A memory corruption flaw exists in Adobe Reader and Acrobat. The program fails to sanitize certain unspecified user-supplied input, resulting in memory corruption. With a specially crafted PDF file, a context-dependent attacker can execute arbitrary code. |
71390 | Adobe Reader / Acrobat 3D U3D Texture iff RLE Decompression Overflow Adobe Reader and Acrobat are prone to an overflow condition. The program's implementation of an image format supported by the Universal 3D compressed file format fails to properly sanitize user-supplied input resulting in a buffer overflow. With a specially crafted Universal 3D (U3D) file, a context-dependent attacker can potentially execute arbitrary code. |
71389 | Adobe Reader / Acrobat 3D U3D Texture rgba RLE Decompression Overflow Adobe Reader and Acrobat are prone to an overflow condition. The program's implementation of an image format supported by the Universal 3D compressed file format fails to properly sanitize user-supplied input resulting in a buffer overflow related to Texture and rgba. With a specially crafted Universal 3D (U3D) file, a context-dependent attacker can potentially execute arbitrary code. |
71388 | Adobe Reader / Acrobat 3D U3D Texture bmp RLE Decompression Overflow Adobe Reader and Acrobat are prone to an overflow condition. The program's implementation of an image format supported by the Universal 3D compressed file format fails to properly sanitize user-supplied input resulting in a buffer overflow. With a specially crafted Universal 3D (U3D) file, a context-dependent attacker can potentially execute arbitrary code. |
71387 | Adobe Reader / Acrobat 3D U3D Texture psd RLE Decompression Overflow Adobe Reader and Acrobat are prone to an overflow condition. The program's implementation of an image format supported by the Universal 3D compressed file format fails to properly sanitize user-supplied input resulting in a buffer overflow. With a specially crafted Universal 3D (U3D) file, a context-dependent attacker can potentially execute arbitrary code. |
71386 | Adobe Reader / Acrobat Font Handling Unspecified Code Execution (2011-0594) Adobe Reader and Acrobat contain an unspecified flaw related that may allow a context-dependent attacker to use a crafted font to execute arbitrary code. No further details have been provided. |
71385 | Adobe Reader / Acrobat U3D Texture fli RLE Decompression Overflow Adobe Reader and Acrobat are prone to an overflow condition. The program's implementation of an image format supported by the Universal 3D compressed file format fails to properly sanitize user-supplied input resulting in a buffer overflow. With a specially crafted Universal 3D (U3D) file, a context-dependent attacker can potentially execute arbitrary code. |
71384 | Adobe Reader / Acrobat 2d.dll BMP RLE_8 Decompression Overflow Adobe Reader and Acrobat are prone to an overflow condition. The Bitmap parsing component of 2d.dll fails to properly sanitize user-supplied input resulting in a heap-based buffer overflow. With specially crafted height and width values for an RLE_8 compressed bitmap, a context-dependent attacker can potentially execute arbitrary code. |
71383 | Adobe Reader / Acrobat ACE.dll ICC Parsing Overflow Adobe Reader and Acrobat are prone to an overflow condition. The ICC parsing component of ACE.dll fails to properly sanitize user-supplied input resulting in an integer overflow. With specially crafted crafted ICC data, a context-dependent attacker can potentially execute arbitrary code. |
71382 | Adobe Reader / Acrobat 4/8-bit RLE Compressed BMP ColorData Parsing Overflow Adobe Reader and Acrobat contain a flaw related to the Bitmap parsing component in rt3d.dll's use of 4/8-bit RLE compression. The issue is triggered when an attacker uses a pointer to copy data into the fixed-length color data buffer. This may allow a context-dependent attacker to execute arbitrary code. |
71381 | Adobe Reader / Acrobat U3D Parent Node Count Handling Overflow A memory corruption flaw exists in Adobe Reader and Acrobat. The U3D component fails to sanitize user-supplied input when using the Parent Node count to calculate the size of an allocation, resulting in memory corruption. With a specially crafted 3D file, a context-dependent attacker can execute arbitrary code. |
71380 | Adobe Reader / Acrobat Image Handling Unspecified Memory Corruption Code Exec... A memory corruption flaw exists in Adobe Reader and Acrobat. The program fails to sanitize certain unspecified user-supplied input, resulting in memory corruption. With a specially crafted PDF file, a context-dependent attacker can execute arbitrary code. |
71379 | Adobe Reader / Acrobat Unspecified XSS (2011-0604) Adobe Reader and Acrobat contain a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the applications do not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server. |
71378 | Adobe Reader / Acrobat on Mac Unspecified Code Execution (2011-0605) Adobe Reader and Acrobat on Mac contains an unspecified memory corruption flaw that may allow an attacker to execute arbitrary code. No further details have been provided. |
71377 | Adobe Reader / Acrobat rt3d.dll Crafted File Length Handling Overflow Adobe Reader and Acrobat are prone to an overflow condition. The 3d.dll component fails to properly sanitize user-supplied input resulting in a stack-based buffer overflow. With a specially crafted length value in a file, a context-dependent attacker can potentially execute arbitrary code. |
71376 | Adobe Reader / Acrobat Path Subversion Arbitrary DLL Injection Code Execution Adobe Reader and Acrobat is prone to a flaw in the way it loads dynamic-link libraries (DLL). The program uses a fixed path to look for specific files or libraries. This path includes directories that may not be trusted or under user control. By placing a custom version of the file or library in the path, the program will load it before the legitimate version. This allows an attacker to inject custom code that will be run with the privilege of the program or user executing the program. This can be done by tricking a user into opening a file from the local file system or a USB drive in some cases. This attack can be leveraged remotely in some cases by placing the malicious file or library on a network share or extracted archive downloaded from a remote source. |
71375 | Adobe Reader / Acrobat PDF JPEG2000 (JP2K) Image Handling Arbitrary Code Exec... A memory corruption flaw exists in Adobe Reader and Acrobat. The programs fail to sanitize user-supplied input when handling a JPEG2000 file embedded inside of a PDF file, resulting in memory corruption. With a specially crafted JP2K record type in a JPEG2000 image in a PDF file, a context-dependent attacker can execute arbitrary code. |
71374 | Adobe Reader / Acrobat Unspecified Memory Corruption Code Execution (2011-0563) A memory corruption flaw exists in Adobe Reader and Acrobat. The program fails to sanitize certain unspecified user-supplied input, resulting in memory corruption. With a specially crafted PDF file, a context-dependent attacker can execute arbitrary code. |
71373 | Adobe Reader / Acrobat Unspecified Library Loading Code Execution (2011-0570) Adobe Reader and Acrobat are prone to a flaw in the way it loads dynamic-link libraries (DLL). The program uses a fixed path to look for specific files or libraries. This path includes directories that may not be trusted or under user control. By placing a custom version of the file or library in the path, the program will load it before the legitimate version. This allows an attacker to inject custom code that will be run with the privilege of the program or user executing the program. This can be done by tricking a user into opening a file from the local file system or a USB drive in some cases. This attack can be leveraged remotely in some cases by placing the malicious file or library on a network share or extracted archive downloaded from a remote source. |
69005 | Adobe Reader EScript.api Plugin printSeps Function Memory Corruption A memory corruption flaw exists in Adobe Reader. The flaw is caused due to an unspecified error when parsing PDF files and can be exploited to corrupt memory. With a specially crafted PDF file, it may allow execution of arbitrary code. |
Information Assurance Vulnerability Management (IAVM)
Date | Description |
---|---|
2012-05-03 | IAVM : 2012-B-0048 - Multiple Vulnerabilities in HP Systems Insight Manager Severity : Category I - VMSKEY : V0032178 |
Snort® IPS/IDS
Date | Description |
---|---|
2017-07-11 | Adobe malicious IFF memory corruption attempt RuleID : 43133 - Revision : 2 - Type : FILE-OTHER |
2017-07-11 | Adobe malicious IFF memory corruption attempt RuleID : 43132 - Revision : 2 - Type : FILE-OTHER |
2017-07-11 | Adobe malicious IFF memory corruption attempt RuleID : 43131 - Revision : 2 - Type : FILE-OTHER |
2017-07-11 | Adobe malicious IFF memory corruption attempt RuleID : 43130 - Revision : 2 - Type : FILE-OTHER |
2015-06-23 | Adobe Acrobat Reader malformed shading modifier heap corruption attempt RuleID : 34552 - Revision : 2 - Type : FILE-PDF |
2014-04-24 | Adobe Acrobat Reader field flags exploit attempt RuleID : 30236 - Revision : 3 - Type : FILE-PDF |
2014-03-27 | Adobe Flash regular expression grouping depth buffer overflow attempt RuleID : 29934 - Revision : 4 - Type : FILE-FLASH |
2014-03-08 | Adobe Acrobat Reader malformed shading modifier heap corruption attempt RuleID : 29622 - Revision : 4 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader universal 3D stream memory corruption attempt RuleID : 28790 - Revision : 9 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader universal 3D format memory corruption attempt RuleID : 28748 - Revision : 8 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader universal 3D format memory corruption attempt RuleID : 28747 - Revision : 8 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader invalid PDF JavaScript printSeps extension call attempt RuleID : 28723 - Revision : 6 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader invalid PDF JavaScript printSeps extension call attempt RuleID : 28722 - Revision : 6 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Universal 3D stream memory corruption attempt RuleID : 28709 - Revision : 8 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader CoolType.dll glyf directory table buffer overflow attempt RuleID : 28639 - Revision : 6 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader CoolType.dll glyf directory table buffer overflow attempt RuleID : 28638 - Revision : 6 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader CoolType.dll glyf directory table buffer overflow attempt RuleID : 28635 - Revision : 6 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader CoolType.dll composite glyf buffer overflow attempt RuleID : 28634 - Revision : 6 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Universal 3D stream memory corruption attempt RuleID : 28633 - Revision : 8 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat universal 3D format memory corruption attempt RuleID : 28628 - Revision : 6 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat universal 3D format memory corruption attempt RuleID : 28627 - Revision : 6 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader U3D rgba parsing overflow attempt RuleID : 28625 - Revision : 7 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader malformed shading modifier heap corruption attempt RuleID : 28622 - Revision : 7 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat universal 3D format memory corruption attempt RuleID : 28427 - Revision : 8 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat universal 3D format memory corruption attempt RuleID : 28426 - Revision : 6 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader malformed shading modifier heap corruption attempt RuleID : 28361 - Revision : 7 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader CoolType.dll composite glyf buffer overflow attempt RuleID : 28266 - Revision : 6 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader CoolType.dll glyf directory table buffer overflow attempt RuleID : 28262 - Revision : 6 - Type : FILE-PDF |
2014-01-10 | Gong Da exploit kit possible jar download RuleID : 27706 - Revision : 3 - Type : EXPLOIT-KIT |
2014-01-10 | Gong Da exploit kit Java exploit requested RuleID : 27705 - Revision : 3 - Type : EXPLOIT-KIT |
2014-01-10 | Gong Da exploit kit Java exploit requested RuleID : 27704 - Revision : 3 - Type : EXPLOIT-KIT |
2014-01-10 | Gong Da exploit kit plugin detection RuleID : 27703 - Revision : 2 - Type : EXPLOIT-KIT |
2014-01-10 | Gong Da exploit kit landing page RuleID : 27702 - Revision : 3 - Type : EXPLOIT-KIT |
2014-01-10 | Gong Da Jar file download RuleID : 27701 - Revision : 2 - Type : EXPLOIT-KIT |
2014-01-10 | Gong Da exploit kit redirection page received RuleID : 26013 - Revision : 4 - Type : EXPLOIT-KIT |
2014-01-10 | Adobe Flash Player ActionScript 3 integer overflow attempt RuleID : 25835 - Revision : 7 - Type : FILE-FLASH |
2014-01-10 | Adobe Flash Player MP4 sequence parameter set parsing overflow attempt RuleID : 24672 - Revision : 8 - Type : FILE-MULTIMEDIA |
2014-01-10 | Adobe Flash Player MP4 sequence parameter set parsing overflow attempt RuleID : 23098 - Revision : 11 - Type : FILE-MULTIMEDIA |
2014-01-10 | Phoenix exploit kit post-compromise behavior RuleID : 21860 - Revision : 5 - Type : MALWARE-CNC |
2014-01-10 | Phoenix exploit kit landing page RuleID : 21640 - Revision : 6 - Type : EXPLOIT-KIT |
2014-01-10 | Adobe Acrobat Reader malformed shading modifier heap corruption attempt RuleID : 21253 - Revision : 13 - Type : FILE-PDF |
2014-01-10 | Eleanore exploit kit post-exploit page request RuleID : 21071 - Revision : 5 - Type : EXPLOIT-KIT |
2014-01-10 | Eleanore exploit kit pdf exploit page request RuleID : 21070 - Revision : 4 - Type : EXPLOIT-KIT |
2014-01-10 | Eleanore exploit kit exploit fetch request RuleID : 21069 - Revision : 4 - Type : EXPLOIT-KIT |
2014-01-10 | Eleanore exploit kit landing page RuleID : 21068 - Revision : 4 - Type : EXPLOIT-KIT |
2014-01-10 | DNS request for known malware domain prettylikeher.com - Sykipot RuleID : 21048 - Revision : 7 - Type : BLACKLIST |
2014-01-10 | known malicious SSL certificate - Sykipot C&C RuleID : 21046 - Revision : 4 - Type : MALWARE-CNC |
2014-01-10 | Yang Pack yg.htm landing page RuleID : 21006 - Revision : 5 - Type : MALWARE-CNC |
2014-01-10 | Adobe Acrobat Reader PRC file MarkupLinkedItem arbitrary code execution attempt RuleID : 20802 - Revision : 10 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader malformed shading modifier heap corruption attempt RuleID : 20659 - Revision : 17 - Type : FILE-PDF |
2014-01-10 | Adobe Flash MP4 ref_frame allocated buffer overflow attempt RuleID : 20555 - Revision : 11 - Type : FILE-FLASH |
2014-01-10 | Adobe Flash Speex-encoded audio buffer underflow attempt RuleID : 20181 - Revision : 7 - Type : FILE-FLASH |
2014-01-10 | Adobe Acrobat Reader embedded BMP parsing corruption attempt RuleID : 20171 - Revision : 10 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader embedded BMP parsing corruption attempt RuleID : 20170 - Revision : 10 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader embedded BMP parsing corruption attempt RuleID : 20169 - Revision : 10 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader getCosObj file overwrite attempt RuleID : 20156 - Revision : 11 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader CoolType.dll composite glyf buffer overflow attempt RuleID : 20155 - Revision : 14 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader CoolType.dll glyf directory table buffer overflow attempt RuleID : 20154 - Revision : 14 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat embedded JPEG file APP0 chunk memory corruption attempt RuleID : 20153 - Revision : 11 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat GDI object leak memory corruption attempt RuleID : 20152 - Revision : 10 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader embedded PCX parsing corruption attempt RuleID : 20150 - Revision : 12 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader embedded IFF file RGBA chunk memory corruption attempt RuleID : 20149 - Revision : 11 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader embedded PICT parsing corruption attempt RuleID : 20148 - Revision : 10 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader embedded PICT parsing corruption attempt RuleID : 20147 - Revision : 10 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader embedded PICT parsing corruption attempt RuleID : 20145 - Revision : 10 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat embedded TIFF DotRange structure memory corruption attempt RuleID : 20144 - Revision : 10 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader app.openDoc path vulnerability RuleID : 20142 - Revision : 10 - Type : FILE-PDF |
2014-01-10 | Adobe Flash MP4 ref_frame allocated buffer overflow attempt RuleID : 19693 - Revision : 10 - Type : FILE-FLASH |
2014-01-10 | Adobe Flash cross-site request forgery attempt RuleID : 19692 - Revision : 11 - Type : FILE-FLASH |
2014-01-10 | Adobe Flash Player ActionScript File reference buffer overflow attempt RuleID : 19691 - Revision : 12 - Type : FILE-FLASH |
2014-01-10 | Adobe Flash Player ActionScript duplicateDoorInputArguments stack overwrite RuleID : 19690 - Revision : 12 - Type : FILE-FLASH |
2014-01-10 | Adobe Flash Player ActionScript dynamic calculation double-free attempt RuleID : 19689 - Revision : 12 - Type : FILE-FLASH |
2014-01-10 | Adobe Flash Player ActionScript BitmapData buffer overflow attempt RuleID : 19688 - Revision : 12 - Type : FILE-FLASH |
2014-01-10 | Adobe Flash ActionStoreRegister instruction length invalidation attempt RuleID : 19687 - Revision : 17 - Type : FILE-FLASH |
2014-01-10 | Adobe Flash uninitialized bitmap structure memory corruption attempt RuleID : 19686 - Revision : 11 - Type : FILE-FLASH |
2014-01-10 | Adobe Flash regular expression grouping depth buffer overflow attempt RuleID : 19685 - Revision : 13 - Type : FILE-FLASH |
2014-01-10 | Adobe CFF font storage memory corruption attempt RuleID : 19684 - Revision : 12 - Type : FILE-OTHER |
2014-01-10 | Adobe Flash Player ActionScript 3 buffer overflow attempt RuleID : 19683 - Revision : 13 - Type : FILE-FLASH |
2014-01-10 | Adobe Flash Player ActionScript 3 integer overflow attempt RuleID : 19682 - Revision : 14 - Type : FILE-FLASH |
2014-01-10 | Adobe Acrobat Reader CCITT stream compression filter invalid image size heap ... RuleID : 18507 - Revision : 20 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader CCITT stream compression filter invalid image size heap ... RuleID : 18506 - Revision : 20 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader U3D rgba parsing overflow attempt RuleID : 18457 - Revision : 19 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat XML entity escape attempt RuleID : 18456 - Revision : 10 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader malformed jpeg2000 superbox attempt RuleID : 18455 - Revision : 15 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat universal 3D format memory corruption attempt RuleID : 18454 - Revision : 18 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat universal 3D format memory corruption attempt RuleID : 18453 - Revision : 22 - Type : FILE-PDF |
2014-01-10 | Adobe malicious IFF memory corruption attempt RuleID : 18452 - Revision : 13 - Type : FILE-OTHER |
2014-01-10 | Adobe Acrobat ICC color integer overflow attempt RuleID : 18451 - Revision : 20 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader malformed BMP RGBQUAD attempt RuleID : 18450 - Revision : 18 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat font definition memory corruption attempt RuleID : 18449 - Revision : 8 - Type : FILE-OTHER |
2014-01-10 | Adobe Acrobat Universal 3D stream memory corruption attempt RuleID : 18448 - Revision : 21 - Type : FILE-PDF |
2014-01-10 | Adobe OpenAction crafted URI action thru Firefox attempt RuleID : 18447 - Revision : 11 - Type : FILE-FLASH |
2014-01-10 | Adobe Acrobat Reader plugin cryptocme2.dll dll-load exploit attempt RuleID : 18443 - Revision : 13 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader plugin cooltype.dll dll-load exploit attempt RuleID : 18442 - Revision : 13 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader plugin bibutils.dll dll-load exploit attempt RuleID : 18441 - Revision : 13 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader plugin agm.dll dll-load exploit attempt RuleID : 18440 - Revision : 13 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader plugin ace.dll dll-load exploit attempt RuleID : 18439 - Revision : 13 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader plugin cryptocme2.dll dll-load exploit attempt RuleID : 18438 - Revision : 12 - Type : FILE-OTHER |
2014-01-10 | Adobe Acrobat Reader plugin cooltype.dll dll-load exploit attempt RuleID : 18437 - Revision : 12 - Type : FILE-OTHER |
2014-01-10 | Adobe Acrobat Reader plugin bibutils.dll dll-load exploit attempt RuleID : 18436 - Revision : 12 - Type : FILE-OTHER |
2014-01-10 | Adobe Acrobat Reader plugin agm.dll dll-load exploit attempt RuleID : 18435 - Revision : 12 - Type : FILE-OTHER |
2014-01-10 | Adobe Acrobat Reader plugin ace.dll dll-load exploit attempt RuleID : 18434 - Revision : 13 - Type : FILE-OTHER |
2014-01-10 | Adobe Acrobat Reader d3dref9.dll dll-load exploit attempt RuleID : 18433 - Revision : 11 - Type : FILE-OTHER |
2014-01-10 | Adobe Acrobat Reader d3dref9.dll dll-load exploit attempt RuleID : 18432 - Revision : 12 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader plugin sqlite.dll dll-load exploit attempt RuleID : 18431 - Revision : 13 - Type : FILE-PDF |
2015-05-28 | Firefox Acrobat Reader cooltype.dll dll-load exploit attempt RuleID : 18430 - Revision : 6 - Type : WEB-CLIENT |
2015-05-28 | Firefox Acrobat Reader bibutils.dll dll-load exploit attempt RuleID : 18429 - Revision : 6 - Type : WEB-CLIENT |
2015-05-28 | Firefox Acrobat Reader agm.dll dll-load exploit attempt RuleID : 18428 - Revision : 6 - Type : WEB-CLIENT |
2015-05-28 | Firefox Acrobat Reader ace.dll dll-load exploit attempt RuleID : 18427 - Revision : 6 - Type : WEB-CLIENT |
2014-01-10 | Adobe Acrobat Reader plugin sqlite.dll dll-load exploit attempt RuleID : 18426 - Revision : 12 - Type : FILE-OTHER |
2015-05-28 | Firefox Acrobat Reader cooltype.dll dll-load exploit attempt RuleID : 18425 - Revision : 5 - Type : NETBIOS |
2015-05-28 | Firefox Acrobat Reader bibutils.dll dll-load exploit attempt RuleID : 18424 - Revision : 5 - Type : NETBIOS |
2015-05-28 | Firefox Acrobat Reader agm.dll dll-load exploit attempt RuleID : 18423 - Revision : 5 - Type : NETBIOS |
2015-05-28 | Firefox Acrobat Reader ace.dll dll-load exploit attempt RuleID : 18422 - Revision : 5 - Type : NETBIOS |
2014-01-10 | Adobe Acrobat Reader field flags exploit attempt RuleID : 18419 - Revision : 14 - Type : FILE-PDF |
2014-01-10 | Adobe Acrobat Reader invalid PDF JavaScript printSeps extension call attempt RuleID : 18102 - Revision : 20 - Type : FILE-PDF |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2014-06-13 | Name : The remote openSUSE host is missing a security update. File : suse_11_3_acroread-120111.nasl - Type : ACT_GATHER_INFO |
2014-06-13 | Name : The remote openSUSE host is missing a security update. File : suse_11_3_acroread-110302.nasl - Type : ACT_GATHER_INFO |
2014-06-13 | Name : The remote openSUSE host is missing a security update. File : suse_11_3_acroread-101206.nasl - Type : ACT_GATHER_INFO |
2014-06-13 | Name : The remote openSUSE host is missing a security update. File : suse_11_4_acroread-111111.nasl - Type : ACT_GATHER_INFO |
2014-06-13 | Name : The remote openSUSE host is missing a security update. File : suse_11_3_acroread-111111.nasl - Type : ACT_GATHER_INFO |
2014-06-13 | Name : The remote openSUSE host is missing a security update. File : openSUSE-2012-33.nasl - Type : ACT_GATHER_INFO |
2014-06-13 | Name : The remote openSUSE host is missing a security update. File : suse_11_4_acroread-120111.nasl - Type : ACT_GATHER_INFO |
2014-06-13 | Name : The remote openSUSE host is missing a security update. File : suse_11_4_flash-player-110513.nasl - Type : ACT_GATHER_INFO |
2014-06-13 | Name : The remote openSUSE host is missing a security update. File : openSUSE-2011-54.nasl - Type : ACT_GATHER_INFO |
2014-06-13 | Name : The remote openSUSE host is missing a security update. File : suse_11_3_flash-player-110810.nasl - Type : ACT_GATHER_INFO |
2014-06-13 | Name : The remote openSUSE host is missing a security update. File : suse_11_3_flash-player-110513.nasl - Type : ACT_GATHER_INFO |
2014-06-13 | Name : The remote openSUSE host is missing a security update. File : suse_11_4_flash-player-110810.nasl - Type : ACT_GATHER_INFO |
2012-06-15 | Name : The remote Windows host contains software that is affected by multiple vulner... File : hp_systems_insight_manager_700_multiple_vulns.nasl - Type : ACT_GATHER_INFO |
2012-01-31 | Name : The remote Gentoo host is missing one or more security-related patches. File : gentoo_GLSA-201201-19.nasl - Type : ACT_GATHER_INFO |
2012-01-27 | Name : The remote FreeBSD host is missing a security-related update. File : freebsd_pkg_fa2f386f481411e189b4001ec9578670.nasl - Type : ACT_GATHER_INFO |
2012-01-18 | Name : The remote SuSE 11 host is missing one or more security updates. File : suse_11_acroread-120112.nasl - Type : ACT_GATHER_INFO |
2012-01-18 | Name : The remote SuSE 10 host is missing a security-related patch. File : suse_acroread-7924.nasl - Type : ACT_GATHER_INFO |
2012-01-11 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2012-0011.nasl - Type : ACT_GATHER_INFO |
2012-01-11 | Name : The version of Adobe Reader on the remote Windows host is affected by multipl... File : adobe_reader_apsb12-01.nasl - Type : ACT_GATHER_INFO |
2012-01-11 | Name : The version of Adobe Acrobat on the remote Windows host is affected by multip... File : adobe_acrobat_apsb12-01.nasl - Type : ACT_GATHER_INFO |
2011-12-13 | Name : The remote SuSE 11 host is missing one or more security updates. File : suse_11_acroread-111111.nasl - Type : ACT_GATHER_INFO |
2011-12-13 | Name : The remote SuSE 10 host is missing a security-related patch. File : suse_flash-player-7679.nasl - Type : ACT_GATHER_INFO |
2011-12-13 | Name : The remote SuSE 10 host is missing a security-related patch. File : suse_acroread-7833.nasl - Type : ACT_GATHER_INFO |
2011-12-07 | Name : The version of Adobe Acrobat on the remote Windows host is affected by multip... File : adobe_acrobat_apsa11-04.nasl - Type : ACT_GATHER_INFO |
2011-12-07 | Name : The version of Adobe Reader on the remote Mac OS X host is affected by a memo... File : macosx_adobe_reader_apsa11-04.nasl - Type : ACT_GATHER_INFO |
2011-12-07 | Name : The version of Adobe Reader on the remote Windows host is affected by multipl... File : adobe_reader_apsa11-04.nasl - Type : ACT_GATHER_INFO |
2011-11-09 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2011-1434.nasl - Type : ACT_GATHER_INFO |
2011-10-14 | Name : The remote Gentoo host is missing one or more security-related patches. File : gentoo_GLSA-201110-11.nasl - Type : ACT_GATHER_INFO |
2011-09-14 | Name : The version of Adobe Reader on the remote Mac OS X host is affected by multip... File : macosx_adobe_reader_apsb11-24.nasl - Type : ACT_GATHER_INFO |
2011-09-14 | Name : The version of Adobe Reader on the remote Windows host is affected by multipl... File : adobe_reader_apsb11-24.nasl - Type : ACT_GATHER_INFO |
2011-09-14 | Name : The version of Adobe Acrobat on the remote Windows host is affected by multip... File : adobe_acrobat_apsb11-24.nasl - Type : ACT_GATHER_INFO |
2011-08-12 | Name : The remote SuSE 11 host is missing a security update. File : suse_11_flash-player-110810.nasl - Type : ACT_GATHER_INFO |
2011-08-11 | Name : The remote Red Hat host is missing a security update. File : redhat-RHSA-2011-1144.nasl - Type : ACT_GATHER_INFO |
2011-08-11 | Name : The remote FreeBSD host is missing one or more security-related updates. File : freebsd_pkg_2c12ae0cc38d11e08eb7001b2134ef46.nasl - Type : ACT_GATHER_INFO |
2011-08-10 | Name : The remote Mac OS X host has a browser plugin that is affected by multiple vu... File : macosx_flash_player_10_3_183_5.nasl - Type : ACT_GATHER_INFO |
2011-08-10 | Name : A browser plugin is affected by multiple vulnerabilities. File : flash_player_apsb11-21.nasl - Type : ACT_GATHER_INFO |
2011-08-10 | Name : The remote Windows host contains a version of Adobe AIR that is affected by m... File : adobe_air_apsb11-21.nasl - Type : ACT_GATHER_INFO |
2011-05-16 | Name : The remote SuSE 11 host is missing a security update. File : suse_11_flash-player-110513.nasl - Type : ACT_GATHER_INFO |
2011-05-05 | Name : The remote openSUSE host is missing a security update. File : suse_11_2_acroread-110302.nasl - Type : ACT_GATHER_INFO |
2011-05-05 | Name : The remote openSUSE host is missing a security update. File : suse_11_2_acroread-101206.nasl - Type : ACT_GATHER_INFO |
2011-05-05 | Name : The remote openSUSE host is missing a security update. File : suse_11_1_acroread-101206.nasl - Type : ACT_GATHER_INFO |
2011-03-07 | Name : The remote SuSE 10 host is missing a security-related patch. File : suse_acroread-7358.nasl - Type : ACT_GATHER_INFO |
2011-03-07 | Name : The remote SuSE 10 host is missing a security-related patch. File : suse_acroread_ja-7359.nasl - Type : ACT_GATHER_INFO |
2011-03-07 | Name : The remote SuSE 11 host is missing a security update. File : suse_11_acroread_ja-110301.nasl - Type : ACT_GATHER_INFO |
2011-03-07 | Name : The remote SuSE 11 host is missing one or more security updates. File : suse_11_acroread-110301.nasl - Type : ACT_GATHER_INFO |
2011-02-24 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2011-0301.nasl - Type : ACT_GATHER_INFO |
2011-02-09 | Name : The version of Adobe Reader on the remote Windows host is affected by multipl... File : adobe_reader_apsb11-03.nasl - Type : ACT_GATHER_INFO |
2011-02-09 | Name : The version of Adobe Acrobat on the remote Windows host is affected by multip... File : adobe_acrobat_apsb11-03.nasl - Type : ACT_GATHER_INFO |
2011-01-27 | Name : The remote SuSE 10 host is missing a security-related patch. File : suse_acroread_ja-7267.nasl - Type : ACT_GATHER_INFO |
2011-01-27 | Name : The remote SuSE 10 host is missing a security-related patch. File : suse_acroread-7266.nasl - Type : ACT_GATHER_INFO |
2011-01-24 | Name : The remote Gentoo host is missing one or more security-related patches. File : gentoo_GLSA-201101-08.nasl - Type : ACT_GATHER_INFO |
2010-12-09 | Name : The remote SuSE 11 host is missing a security update. File : suse_11_acroread_ja-101203.nasl - Type : ACT_GATHER_INFO |
2010-12-09 | Name : The remote SuSE 11 host is missing one or more security updates. File : suse_11_acroread-101203.nasl - Type : ACT_GATHER_INFO |
2010-12-02 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2010-0934.nasl - Type : ACT_GATHER_INFO |
2010-11-16 | Name : The version of Adobe Reader on the remote Windows host is affected by multipl... File : adobe_reader_apsb10-28.nasl - Type : ACT_GATHER_INFO |
Alert History
Date | Informations |
---|---|
2014-02-17 11:37:11 |
|