Adobe Shockwave Player before 12.0.2.122 does not prevent access to address information, which makes it easier for attackers to bypass the ASLR protection mechanism via unspecified vectors.
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Adobe Apsb13 12 | — | — | Apr 9, 2013 | Apr 9, 2013 |
| Adobe Shockwave | — | Upgrade to the latest version of Adobe Shockwave Player | Jan 16, 2014 | Apr 9, 2013 |
| Freebsd | — | Upgrade linux-f10-flashplugin | Dec 10, 2025 | Apr 10, 2013 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub