First published: Sat Jun 09 2012(Updated: )
Stack-based buffer overflow in Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac OS X; before 10.3.183.20 and 11.x before 11.2.202.236 on Linux; before 11.1.111.10 on Android 2.x and 3.x; and before 11.1.115.9 on Android 4.x, and Adobe AIR before 3.3.0.3610, allows attackers to execute arbitrary code via unspecified vectors.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Macromedia Flash Player | <=11.2.202.235 | |
macOS | ||
Linux Kernel | ||
Microsoft Windows Operating System | ||
Macromedia Flash Player | <=11.1.115.8 | |
Android | >=4.0<=4.4.4 | |
Macromedia Flash Player | <=11.1.111.9 | |
Android | >=2.0<=3.2.6 | |
Adobe | <=3.2.0.2070 | |
Android | ||
openSUSE | =11.4 | |
openSUSE | =12.1 | |
SUSE Linux Enterprise Desktop | =10-sp4 | |
SUSE Linux Enterprise Desktop | =11-sp1 | |
SUSE Linux Enterprise Desktop | =11-sp2 | |
Red Hat Enterprise Linux Desktop | =5.0 | |
Red Hat Enterprise Linux Desktop | =6.0 | |
Red Hat Enterprise Linux Server EUS | =6.2 | |
Red Hat Enterprise Linux Server | =5.0 | |
Red Hat Enterprise Linux Server | =6.0 | |
Red Hat Enterprise Linux Server | =6.2 | |
Red Hat Enterprise Linux Workstation | =5.0 | |
Red Hat Enterprise Linux Workstation | =6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-2035 is classified as a critical vulnerability due to its potential to allow remote code execution.
To mitigate CVE-2012-2035, users should upgrade Adobe Flash Player to version 10.3.183.20 or higher, or 11.x to the latest version available.
CVE-2012-2035 affects Adobe Flash Player prior to version 10.3.183.20 on Windows and Mac OS X, among other platforms and versions.
Exploitation of CVE-2012-2035 can lead to unauthorized access, data theft, or compromised systems through remote code execution.
While updating is the best option, temporarily disabling Flash Player can mitigate risk until an update is feasible.