CVE-2010-3649Out-of-bounds Write in Adobe Flash Player

37 documents4 sources
Severity
9.3CRITICALNVD
EPSS
3.0%
top 13.51%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 7
Latest updateMay 13

Description

Unspecified vulnerability in Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows, Mac OS X, Linux, and Solaris, and 10.1.95.1 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unknown vectors, a different vulnerability than CVE-2010-3640, CVE-2010-3641, CVE-2010-3642, CVE-2010-3643, CVE-2010-3644, CVE-2010-3645, CVE-2010-3646, CVE-2010-3647, CVE-2010-3648, CVE-2010-3650, and CVE-2010-3652.

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 8.6 | Impact: 10.0

Affected Packages1 packages

NVDadobe/flash_player9.09.0.289.0+3

Patches

🔴Vulnerability Details

12
GHSA
GHSA-vfhw-r38v-m64r: Unspecified vulnerability in Adobe Flash Player before 92022-05-13
GHSA
GHSA-r7r9-mp8j-256h: Unspecified vulnerability in Adobe Flash Player before 92022-05-13
GHSA
GHSA-wwmv-whfv-fvx5: Unspecified vulnerability in Adobe Flash Player before 92022-05-13
GHSA
GHSA-4mmq-755g-j6g9: Unspecified vulnerability in Adobe Flash Player before 92022-05-13
GHSA
GHSA-q965-5jq8-89gw: Unspecified vulnerability in Adobe Flash Player before 92022-05-13

📋Vendor Advisories

12
Red Hat
flash-plugin: security bulletin APSB10-262010-11-04
Red Hat
flash-plugin: security bulletin APSB10-262010-11-04
Red Hat
flash-plugin: security bulletin APSB10-262010-11-04
Red Hat
flash-plugin: security bulletin APSB10-262010-11-04
Red Hat
flash-plugin: security bulletin APSB10-262010-11-04

💬Community

1
Bugzilla
flash-plugin: security bulletin APSB10-262010-11-04