Unspecified vulnerability in Adobe Flash Player 9.x before 9.0.159.0 and 10.x before 10.0.22.87 allows remote attackers to cause a denial of service (browser crash) or possibly execute arbitrary code via a crafted Shockwave Flash (aka .swf) file.
CVSS Details
- CVSS 3.1 Base Score: 8.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Adobe Flash Apsb09 01 | — | Upgrade to Adobe Flash Player version 10.0.22.87 for LinuxUpgrade to Adobe Flash Player version 10.0.22.87 for Mac OS XUpgrade to Adobe Flash Player version 9.0.159.0 for WindowsUpgrade to Adobe Flash Player version 10.0.22.87 for WindowsUpgrade to Adobe Flash Player version 9.0.159.0 for Mac OS XUpgrade to Adobe Flash Player version 9.0.159.0 for Linux | Jul 11, 2013 | Feb 26, 2009 |
| Apple Osx Flashplayerplugin | — | Upgrade macOS to the latest versionApply OS X security update 2009-002 | Dec 16, 2011 | Feb 26, 2009 |
| Gentoo Linux | — | Upgrade www-plugins/adobe-flash. | Oct 30, 2017 | Feb 26, 2009 |
| Suse | — | Upgrade flash-player | Feb 17, 2015 | Feb 26, 2009 |
| Ubuntu | — | Upgrade adobe-flashpluginUpgrade flashplugin-nonfree | Nov 19, 2024 | Feb 26, 2009 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub