CVE-2013-1367

EUVD-2013-1406
Buffer overflow in Adobe Flash Player before 10.3.183.63 and 11.x before 11.6.602.168 on Windows, before 10.3.183.61 and 11.x before 11.6.602.167 on Mac OS X, before 10.3.183.61 and 11.x before 11.2.202.270 on Linux, before 11.1.111.43 on Android 2.x and 3.x, and before 11.1.115.47 on Android 4.x; Adobe AIR before 3.6.0.597; and Adobe AIR SDK before 3.6.0.599 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2013-0642, CVE-2013-0645, CVE-2013-1365, CVE-2013-1366, CVE-2013-1368, CVE-2013-1369, CVE-2013-1370, CVE-2013-1372, and CVE-2013-1373.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 88%
Affected Products (NVD)
VendorProductVersion
adobeflash_player
10.3 ≤
𝑥
< 10.3.183.63
adobeflash_player
11.6 ≤
𝑥
< 11.6.602.168
adobeflash_player
10.3 ≤
𝑥
< 10.3.183.61
adobeflash_player
11.2 ≤
𝑥
< 11.2.202.270
adobeflash_player
11.1 ≤
𝑥
< 11.1.111.43
adobeflash_player
11.1 ≤
𝑥
< 11.1.115.47
adobeair
𝑥
< 3.6.0.597
adobeair_sdk
𝑥
< 3.6.0.599
adobeflash_player
10.3 ≤
𝑥
< 10.3.183.61
adobeflash_player
11.6 ≤
𝑥
< 11.6.602.167
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
adobe-flashplugin
hardy
ignored
lucid
Fixed 11.2.202.270-0lucid1
released
oneiric
Fixed 11.2.202.270-0oneiric1
released
precise
Fixed 11.2.202.270-0precise1
released
quantal
Fixed 11.2.202.270-0quantal1
released
flashplugin-nonfree
hardy
ignored
lucid
Fixed 11.2.202.270ubuntu0.10.04.1
released
oneiric
Fixed 11.2.202.270ubuntu0.11.10.1
released
precise
Fixed 11.2.202.270ubuntu0.12.04.1
released
quantal
Fixed 11.2.202.270ubuntu0.12.10.1
released