First published: Sat Jun 09 2012(Updated: )
Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac OS X; before 10.3.183.20 and 11.x before 11.2.202.236 on Linux; before 11.1.111.10 on Android 2.x and 3.x; and before 11.1.115.9 on Android 4.x, and Adobe AIR before 3.3.0.3610, allows attackers to execute arbitrary code or cause a denial of service (NULL pointer dereference) via unspecified vectors.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Macromedia Flash Player | <=11.2.202.235 | |
macOS | ||
Linux Kernel | ||
Microsoft Windows Operating System | ||
Macromedia Flash Player | <=11.1.115.8 | |
Android | >=4.0<=4.4.4 | |
Macromedia Flash Player | <=11.1.111.9 | |
Android | >=2.0<=3.2.6 | |
Adobe | <=3.2.0.2070 | |
Android | ||
openSUSE | =11.4 | |
openSUSE | =12.1 | |
SUSE Linux Enterprise Desktop | =10-sp4 | |
SUSE Linux Enterprise Desktop | =11-sp1 | |
SUSE Linux Enterprise Desktop | =11-sp2 | |
Red Hat Enterprise Linux Desktop | =5.0 | |
Red Hat Enterprise Linux Desktop | =6.0 | |
Red Hat Enterprise Linux Server EUS | =6.2 | |
Red Hat Enterprise Linux Server | =5.0 | |
Red Hat Enterprise Linux Server | =6.0 | |
Red Hat Enterprise Linux Server | =6.2 | |
Red Hat Enterprise Linux Workstation | =5.0 | |
Red Hat Enterprise Linux Workstation | =6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-2039 is classified as a critical vulnerability that allows attackers to execute arbitrary code remotely.
To fix CVE-2012-2039, update Adobe Flash Player to version 10.3.183.20 or later on Windows and Mac, and version 11.3.300.257 or later on Linux.
Adobe Flash Player versions prior to 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac, and several older Android versions are affected by CVE-2012-2039.
Yes, Adobe AIR before version 3.3.0.3610 is affected by CVE-2012-2039.
CVE-2012-2039 impacts Windows, Mac OS X, Linux, and specific versions of Android.