CVE-2012-2036

Integer overflow in Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac OS X; before 10.3.183.20 and 11.x before 11.2.202.236 on Linux; before 11.1.111.10 on Android 2.x and 3.x; and before 11.1.115.9 on Android 4.x, and Adobe AIR before 3.3.0.3610, allows attackers to execute arbitrary code via unspecified vectors.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
adobeCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 88%
VendorProductVersion
adobeflash_player
𝑥
≤ 11.2.202.235
adobeflash_player
𝑥
≤ 11.1.115.8
adobeflash_player
𝑥
≤ 11.1.111.9
adobeair
𝑥
≤ 3.2.0.2070
opensuseopensuse
11.4
opensuseopensuse
12.1
redhatenterprise_linux_desktop
5.0
redhatenterprise_linux_desktop
6.0
redhatenterprise_linux_eus
6.2
redhatenterprise_linux_server
5.0
redhatenterprise_linux_server
6.0
redhatenterprise_linux_server_aus
6.2
redhatenterprise_linux_workstation
5.0
redhatenterprise_linux_workstation
6.0
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
adobe-flashplugin
precise
Fixed 11.2.202.236-0precise1
released
oneiric
Fixed 11.2.202.235-0oneiric1
released
natty
Fixed 11.2.202.235-0natty1
released
lucid
Fixed 11.2.202.235-0lucid1
released
hardy
ignored
flashplugin-nonfree
precise
Fixed 11.2.202.236ubuntu0.12.04.1
released
oneiric
Fixed 11.2.202.236ubuntu0.11.10.1
released
natty
Fixed 11.2.202.236ubuntu0.11.04.1
released
lucid
Fixed 11.2.202.236ubuntu0.10.04.1
released
hardy
ignored