Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-0643

Опубликовано: 27 фев. 2013
Источник: ubuntu
Приоритет: medium
CVSS2: 9.3
CVSS3: 8.8

Описание

The Firefox sandbox in Adobe Flash Player before 10.3.183.67 and 11.x before 11.6.602.171 on Windows and Mac OS X, and before 10.3.183.67 and 11.x before 11.2.202.273 on Linux, does not properly restrict privileges, which makes it easier for remote attackers to execute arbitrary code via crafted SWF content, as exploited in the wild in February 2013.

РелизСтатусПримечание
devel

DNE

hardy

ignored

end of life
lucid

released

11.2.202.273-0lucid1
oneiric

released

11.2.202.273-0oneiric1
precise

released

11.2.202.273-0precise1
quantal

released

11.2.202.273-0quantal1
upstream

released

11.2.202.273

Показывать по

РелизСтатусПримечание
devel

released

11.2.202.273ubuntu0.12.10.1
hardy

ignored

end of life
lucid

released

11.2.202.273ubuntu0.10.04.1
oneiric

released

11.2.202.273ubuntu0.11.10.1
precise

released

11.2.202.273ubuntu0.12.04.1
quantal

released

11.2.202.273ubuntu0.12.10.1
upstream

released

11.2.202.273

Показывать по

9.3 Critical

CVSS2

8.8 High

CVSS3

Связанные уязвимости

redhat
почти 13 лет назад

The Firefox sandbox in Adobe Flash Player before 10.3.183.67 and 11.x before 11.6.602.171 on Windows and Mac OS X, and before 10.3.183.67 and 11.x before 11.2.202.273 on Linux, does not properly restrict privileges, which makes it easier for remote attackers to execute arbitrary code via crafted SWF content, as exploited in the wild in February 2013.

CVSS3: 8.8
nvd
почти 13 лет назад

The Firefox sandbox in Adobe Flash Player before 10.3.183.67 and 11.x before 11.6.602.171 on Windows and Mac OS X, and before 10.3.183.67 and 11.x before 11.2.202.273 on Linux, does not properly restrict privileges, which makes it easier for remote attackers to execute arbitrary code via crafted SWF content, as exploited in the wild in February 2013.

CVSS3: 8.8
github
больше 3 лет назад

The Firefox sandbox in Adobe Flash Player before 10.3.183.67 and 11.x before 11.6.602.171 on Windows and Mac OS X, and before 10.3.183.67 and 11.x before 11.2.202.273 on Linux, does not properly restrict privileges, which makes it easier for remote attackers to execute arbitrary code via crafted SWF content, as exploited in the wild in February 2013.

9.3 Critical

CVSS2

8.8 High

CVSS3