CVE-2014-0510
published 2014-03-27CVE-2014-0510: Heap-based buffer overflow in Adobe Flash Player 12.0.0.77 allows remote attackers to execute arbitrary code and bypass a sandbox protection mechanism via…
PriorityP351critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
8.49%
94.4th percentile
Heap-based buffer overflow in Adobe Flash Player 12.0.0.77 allows remote attackers to execute arbitrary code and bypass a sandbox protection mechanism via unspecified vectors, as demonstrated by Zeguang Zhao and Liang Chen during a Pwn2Own competition at CanSecWest 2014.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | flash_player | — | — |
CVSS provenance
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
vendor_redhat10.0CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Adobe Flash Player 12.0.0.77 memory corruption (Nessus ID 74008 / ID 121866)
vuldb·2026-05-09·CVSS 10.0
CVE-2014-0510 [CRITICAL] Adobe Flash Player 12.0.0.77 memory corruption (Nessus ID 74008 / ID 121866)
A vulnerability was found in Adobe Flash Player 12.0.0.77. It has been rated as critical. This vulnerability affects unknown code. This manipulation causes memory corruption.
This vulnerability is tracked as CVE-2014-0510. The attack is possible to be carried out remotely. Moreover, an exploit is present.
GHSA
GHSA-v4fq-8fr9-cwvf: Heap-based buffer overflow in Adobe Flash Player 12
ghsa_unreviewed·2022-05-17
CVE-2014-0510 [HIGH] CWE-119 GHSA-v4fq-8fr9-cwvf: Heap-based buffer overflow in Adobe Flash Player 12
Heap-based buffer overflow in Adobe Flash Player 12.0.0.77 allows remote attackers to execute arbitrary code and bypass a sandbox protection mechanism via unspecified vectors, as demonstrated by Zeguang Zhao and Liang Chen during a Pwn2Own competition at CanSecWest 2014.
Red Hat
flash-plugin: use-after-free flaw leads to arbitrary code execution
vendor_redhat·2014-03-13·CVSS 10.0
CVE-2014-0510 [CRITICAL] CWE-416 flash-plugin: use-after-free flaw leads to arbitrary code execution
flash-plugin: use-after-free flaw leads to arbitrary code execution
Heap-based buffer overflow in Adobe Flash Player 12.0.0.77 allows remote attackers to execute arbitrary code and bypass a sandbox protection mechanism via unspecified vectors, as demonstrated by Zeguang Zhao and Liang Chen during a Pwn2Own competition at CanSecWest 2014.
No detection rules found.
No public exploits indexed.
http://helpx.adobe.com/security/products/flash-player/apsb14-14.htmlhttp://lists.opensuse.org/opensuse-security-announce/2014-05/msg00008.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0496.htmlhttp://security.gentoo.org/glsa/glsa-201406-08.xmlhttp://twitter.com/thezdi/statuses/444262022444621824http://www.pwn2own.com/2014/03/pwn2own-results-thursday-day-two/http://www.securityfocus.com/bid/66241http://helpx.adobe.com/security/products/flash-player/apsb14-14.htmlhttp://lists.opensuse.org/opensuse-security-announce/2014-05/msg00008.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0496.htmlhttp://security.gentoo.org/glsa/glsa-201406-08.xmlhttp://twitter.com/thezdi/statuses/444262022444621824http://www.pwn2own.com/2014/03/pwn2own-results-thursday-day-two/http://www.securityfocus.com/bid/66241
2014-03-27
Published