cbcvebase.

Adobe Air vulnerabilities

145 known vulnerabilities affecting adobe/adobe_air.

Total CVEs
145
CISA KEV
2
actively exploited
Public exploits
5
Exploited in wild
6
Severity breakdown
CRITICAL116HIGH15MEDIUM14

Vulnerabilities

Page 3 of 8
CVE-2015-0305P3CRITICALCVSS 9.3≤ 15.0.0.3562015-01-13
CVE-2015-0305 [CRITICAL] CVE-2015-0305: Adobe Flash Player before 13.0.0.260 and 14.x through 16.x before 16.0.0.257 on Windows and OS X and Adobe Flash Player before 13.0.0.260 and 14.x through 16.x before 16.0.0.257 on Windows and OS X and before 11.2.202.429 on Linux, Adobe AIR before 16.0.0.245 on Windows and OS X and before 16.0.0.272 on Android, Adobe AIR SDK before 16.0.0.272, and Adobe AIR SDK & Compiler before 16.0.0.272 allow attackers to execute arbitrary code by leveraging an unspeci
nvd
CVE-2015-0306P3CRITICALCVSS 10.0≤ 15.0.0.3562015-01-13
CVE-2015-0306 [CRITICAL] CVE-2015-0306: Adobe Flash Player before 13.0.0.260 and 14.x through 16.x before 16.0.0.257 on Windows and OS X and Adobe Flash Player before 13.0.0.260 and 14.x through 16.x before 16.0.0.257 on Windows and OS X and before 11.2.202.429 on Linux, Adobe AIR before 16.0.0.245 on Windows and OS X and before 16.0.0.272 on Android, Adobe AIR SDK before 16.0.0.272, and Adobe AIR SDK & Compiler before 16.0.0.272 allow attackers to execute arbitrary code or cause a denial of ser
nvd
CVE-2012-0772P3CRITICALCVSS 10.0≤ 3.1.0.488v1.0+19 more2012-03-28
CVE-2012-0772 [CRITICAL] CWE-119 CVE-2012-0772: An unspecified ActiveX control in Adobe Flash Player before 10.3.183.18 and 11.x before 11.2.202.228 An unspecified ActiveX control in Adobe Flash Player before 10.3.183.18 and 11.x before 11.2.202.228, and AIR before 3.2.0.2070, on Windows does not properly perform URL security domain checking, which allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unknown vectors.
nvd
CVE-2015-0303P3CRITICALCVSS 10.0≤ 15.0.0.3562015-01-13
CVE-2015-0303 [CRITICAL] CVE-2015-0303: Adobe Flash Player before 13.0.0.260 and 14.x through 16.x before 16.0.0.257 on Windows and OS X and Adobe Flash Player before 13.0.0.260 and 14.x through 16.x before 16.0.0.257 on Windows and OS X and before 11.2.202.429 on Linux, Adobe AIR before 16.0.0.245 on Windows and OS X and before 16.0.0.272 on Android, Adobe AIR SDK before 16.0.0.272, and Adobe AIR SDK & Compiler before 16.0.0.272 allow attackers to execute arbitrary code or cause a denial of ser
nvd
CVE-2014-0507P3CRITICALCVSS 9.3≤ 4.0.0.1390v1.0+55 more2014-04-08
CVE-2014-0507 [CRITICAL] CWE-119 CVE-2014-0507: Buffer overflow in Adobe Flash Player before 11.7.700.275 and 11.8.x through 13.0.x before 13.0.0.18 Buffer overflow in Adobe Flash Player before 11.7.700.275 and 11.8.x through 13.0.x before 13.0.0.182 on Windows and OS X and before 11.2.202.350 on Linux, Adobe AIR before 13.0.0.83 on Android, Adobe AIR SDK before 13.0.0.83, and Adobe AIR SDK & Compiler before 13.0.0.83 allows attackers to execute arbitrary code via unspecified vectors.
nvd
CVE-2009-3794P3CRITICALCVSS 9.3≤ 1.5.2v1.0+3 more2009-12-10
CVE-2009-3794 [CRITICAL] CWE-119 CVE-2009-3794: Heap-based buffer overflow in Adobe Flash Player before 10.0.42.34 and Adobe AIR before 1.5.3 allows Heap-based buffer overflow in Adobe Flash Player before 10.0.42.34 and Adobe AIR before 1.5.3 allows remote attackers to execute arbitrary code via crafted dimensions of JPEG data in an SWF file.
nvd
CVE-2009-3799P3CRITICALCVSS 9.3≤ 1.5.2v1.0+3 more2009-12-10
CVE-2009-3799 [CRITICAL] CWE-189 CVE-2009-3799: Integer overflow in the Verifier::parseExceptionHandlers function in Adobe Flash Player before 10.0. Integer overflow in the Verifier::parseExceptionHandlers function in Adobe Flash Player before 10.0.42.34 and Adobe AIR before 1.5.3 allows remote attackers to execute arbitrary code via an SWF file with a large exception_count value that triggers memory corruption, related to "generation of ActionScript exception handlers."
nvd
CVE-2013-0650P3CRITICALCVSS 10.0≤ 3.6.0.597v1.0+44 more2013-03-13
CVE-2013-0650 [CRITICAL] CWE-399 CVE-2013-0650: Use-after-free vulnerability in Adobe Flash Player before 10.3.183.68 and 11.x before 11.6.602.180 o Use-after-free vulnerability in Adobe Flash Player before 10.3.183.68 and 11.x before 11.6.602.180 on Windows and Mac OS X, before 10.3.183.68 and 11.x before 11.2.202.275 on Linux, before 11.1.111.44 on Android 2.x and 3.x, and before 11.1.115.48 on Android 4.x; Adobe AIR before 3.6.0.6090; Adobe AIR SDK before 3.6.0.6090; and Adobe AIR SDK & Compi
nvd
CVE-2012-5252P3CRITICALCVSS 10.0≤ 3.4.0.2540v1.0+38 more2012-10-09
CVE-2012-5252 [CRITICAL] CWE-119 CVE-2012-5252: Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 1 Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.2710; and Adobe AIR SDK before 3.4.0.2710 allow attackers to execute arbitrary code or cause a d
nvd
CVE-2012-5270P3CRITICALCVSS 10.0≤ 3.4.0.2540v1.0+38 more2012-10-09
CVE-2012-5270 [CRITICAL] CWE-119 CVE-2012-5270: Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 1 Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.2710; and Adobe AIR SDK before 3.4.0.2710 allow attackers to execute arbitrary code or cause a d
nvd
CVE-2012-5272P3CRITICALCVSS 10.0≤ 3.4.0.2540v1.0+38 more2012-10-09
CVE-2012-5272 [CRITICAL] CWE-119 CVE-2012-5272: Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 1 Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.2710; and Adobe AIR SDK before 3.4.0.2710 allow attackers to execute arbitrary code or cause a d
nvd
CVE-2013-1371P3CRITICALCVSS 10.0≤ 3.6.0.597v1.0+44 more2013-03-13
CVE-2013-1371 [CRITICAL] CWE-119 CVE-2013-1371: Adobe Flash Player before 10.3.183.68 and 11.x before 11.6.602.180 on Windows and Mac OS X, before 1 Adobe Flash Player before 10.3.183.68 and 11.x before 11.6.602.180 on Windows and Mac OS X, before 10.3.183.68 and 11.x before 11.2.202.275 on Linux, before 11.1.111.44 on Android 2.x and 3.x, and before 11.1.115.48 on Android 4.x; Adobe AIR before 3.6.0.6090; Adobe AIR SDK before 3.6.0.6090; and Adobe AIR SDK & Compiler before 3.6.0.6090 allow atta
nvd
CVE-2014-0558P3CRITICALCVSS 10.0≤ 15.0.0.252v13.0.0.83+6 more2014-10-15
CVE-2014-0558 [CRITICAL] CWE-94 CVE-2014-0558: Adobe Flash Player before 13.0.0.250 and 14.x and 15.x before 15.0.0.189 on Windows and OS X and bef Adobe Flash Player before 13.0.0.250 and 14.x and 15.x before 15.0.0.189 on Windows and OS X and before 11.2.202.411 on Linux, Adobe AIR before 15.0.0.293, Adobe AIR SDK before 15.0.0.302, and Adobe AIR SDK & Compiler before 15.0.0.302 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors,
nvd
CVE-2012-5269P3CRITICALCVSS 10.0≤ 3.4.0.2540v1.0+38 more2012-10-09
CVE-2012-5269 [CRITICAL] CWE-119 CVE-2012-5269: Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 1 Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.2710; and Adobe AIR SDK before 3.4.0.2710 allow attackers to execute arbitrary code or cause a d
nvd
CVE-2012-5268P3CRITICALCVSS 10.0≤ 3.4.0.2540v1.0+38 more2012-10-09
CVE-2012-5268 [CRITICAL] CWE-119 CVE-2012-5268: Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 1 Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.2710; and Adobe AIR SDK before 3.4.0.2710 allow attackers to execute arbitrary code or cause a d
nvd
CVE-2012-5258P3CRITICALCVSS 10.0≤ 3.4.0.2540v1.0+38 more2012-10-09
CVE-2012-5258 [CRITICAL] CWE-119 CVE-2012-5258: Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 1 Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.2710; and Adobe AIR SDK before 3.4.0.2710 allow attackers to execute arbitrary code or cause a d
nvd
CVE-2012-5271P3CRITICALCVSS 10.0≤ 3.4.0.2540v1.0+38 more2012-10-09
CVE-2012-5271 [CRITICAL] CWE-119 CVE-2012-5271: Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 1 Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.2710; and Adobe AIR SDK before 3.4.0.2710 allow attackers to execute arbitrary code or cause a d
nvd
CVE-2012-5263P3CRITICALCVSS 10.0≤ 3.4.0.2540v1.0+38 more2012-10-09
CVE-2012-5263 [CRITICAL] CWE-119 CVE-2012-5263: Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 1 Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.2710; and Adobe AIR SDK before 3.4.0.2710 allow attackers to execute arbitrary code or cause a d
nvd
CVE-2012-5261P3CRITICALCVSS 10.0≤ 3.4.0.2540v1.0+38 more2012-10-09
CVE-2012-5261 [CRITICAL] CWE-119 CVE-2012-5261: Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 1 Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.2710; and Adobe AIR SDK before 3.4.0.2710 allow attackers to execute arbitrary code or cause a d
nvd
CVE-2012-5267P3CRITICALCVSS 10.0≤ 3.4.0.2540v1.0+38 more2012-10-09
CVE-2012-5267 [CRITICAL] CWE-119 CVE-2012-5267: Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 1 Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.2710; and Adobe AIR SDK before 3.4.0.2710 allow attackers to execute arbitrary code or cause a d
nvd
Adobe Air vulnerabilities | cvebase