Vulnerability CVE-2013-5329: Information

Description

Adobe Flash Player before 11.7.700.252 and 11.8.x and 11.9.x before 11.9.900.152 on Windows and Mac OS X and before 11.2.202.327 on Linux, Adobe AIR before 3.9.0.1210, Adobe AIR SDK before 3.9.0.1210, and Adobe AIR SDK & Compiler before 3.9.0.1210 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2013-5330.

Severity: CRITICAL (10.0)

Published: Nov. 13, 2013
Modified: Dec. 13, 2018
Error type identifier: CWE-119

Fixed packages

Package name
Branch
Fixed in version
Version from repository
Errata ID
Task #
State
adobe-flash-playerp911-alt2232-alt1110ALT-PU-2013-1137-1108865Fixed
adobe-flash-playerc9f211-alt2232-alt117ALT-PU-2013-1137-1108865Fixed
adobe-flash-playerc711-alt2711-alt29ALT-PU-2014-1289-1116412Fixed

References to Advisories, Solutions, and Tools

Hyperlink
Resource
http://www.adobe.com/support/security/bulletins/apsb13-26.html
  • Patch
  • Vendor Advisory
openSUSE-SU-2013:1717
  • Mailing List
  • Third Party Advisory
openSUSE-SU-2013:1737
  • Mailing List
  • Third Party Advisory
SUSE-SU-2013:1716
  • Mailing List
  • Third Party Advisory
RHSA-2013:1518
  • Third Party Advisory
    1. Configuration 1

      cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*

      cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*

      cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*

      Running on/with:
      cpe:2.3:o:apple:mac_os_x:-:*:*:*:*:*:*:*

      Running on/with:
      cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

      Configuration 2

      cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*

      Running on/with:
      cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*

      Configuration 3

      cpe:2.3:a:adobe:air:*:*:*:*:*:*:*:*
      End excliding
      3.9.0.1210

      cpe:2.3:a:adobe:air_sdk:*:*:*:*:*:*:*:*
      End excliding
      3.9.0.1210