Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.2710; and Adobe AIR SDK before 3.4.0.2710 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than other Flash Player memory corruption CVEs listed in APSB12-22.
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Adobe Air | — | Upgrade to the latest version of Adobe AIR | Oct 15, 2012 | Oct 9, 2012 |
| Adobe Apsb12 22 | — | Upgrade to Adobe Flash Player version 11.2.202.243 for LinuxUpgrade to Adobe Flash Player version 11.4.402.287 for Mac OS XUpgrade to Adobe Flash Player version 10.3.183.29 for WindowsUpgrade to Adobe Flash Player version 10.3.183.29 for Mac OS XUpgrade to Adobe Flash Player version 10.3.183.29 for LinuxUpgrade to Adobe Flash Player version 11.4.402.287 for Windows | Oct 26, 2012 | Oct 9, 2012 |
| Freebsd | — | Upgrade linux-f10-flashplugin | Dec 10, 2025 | Nov 2, 2012 |
| Gentoo Linux | — | Upgrade www-plugins/adobe-flash. | Oct 30, 2017 | Oct 9, 2012 |
| Suse | — | Upgrade flash-player-kde4Upgrade flash-playerUpgrade flash-player-gnome | Feb 17, 2015 | Jun 28, 2013 |
| Ubuntu | — | Upgrade flashplugin-nonfreeUpgrade adobe-flashplugin | Nov 19, 2024 | Oct 9, 2012 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub