First published: Wed Mar 28 2012(Updated: )
The NetStream class in Adobe Flash Player before 10.3.183.18 and 11.x before 11.2.202.228 on Windows, Mac OS X, and Linux; Flash Player before 10.3.183.18 and 11.x before 11.2.202.223 on Solaris; Flash Player before 11.1.111.8 on Android 2.x and 3.x; and AIR before 3.2.0.2070 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Macromedia Flash Player | <10.3.183.18 | |
Macromedia Flash Player | >=11.0<11.2.202.228 | |
Apple iOS and macOS | ||
Linux Kernel | ||
Microsoft Windows | ||
Macromedia Flash Player | <11.1.111.8 | |
Android | ||
Macromedia Flash Player | >=11.0<11.2.202.223 | |
Oracle Solaris and Zettabyte File System (ZFS) | ||
Adobe | <3.2.0.2070 | |
Xerox FreeFlow Print Server | =8.0 | |
Xerox FreeFlow Print Server | =8.0-sp1 | |
Xerox FreeFlow Print Server | =8.0-sp2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-0773 has a critical severity rating due to its potential for remote code execution via Adobe Flash Player.
To fix CVE-2012-0773, update Adobe Flash Player to version 10.3.183.18 or higher, or 11.x to version 11.2.202.228 or higher as appropriate for your operating system.
CVE-2012-0773 affects Adobe Flash Player versions prior to 10.3.183.18 and 11.x versions before 11.2.202.228 on various platforms.
CVE-2012-0773 impacts Adobe Flash Player on Windows, Mac OS X, Linux, and Android 2.x and 3.x as well as AIR versions before 3.2.0.2070.
If you cannot update immediately, consider disabling Flash Player or restricting its use until the patch is applied to mitigate CVE-2012-0773.