CVE-2012-5257: Buffer Overflow
Buffer overflow in Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.2710; and Adobe AIR SDK before 3.4.0.2710 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than other Flash Player buffer overflow CVEs listed in APSB12-22.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-5257?
CVE-2012-5257 is classified as a critical vulnerability allowing remote code execution.
How do I fix CVE-2012-5257?
To fix CVE-2012-5257, update Adobe Flash Player to version 10.3.183.29 or later for Windows and Mac OS X, or to version 11.x 11.4.402.287 or later.
Which versions are affected by CVE-2012-5257?
CVE-2012-5257 affects Adobe Flash Player versions prior to 10.3.183.29 and 11.x prior to 11.4.402.287 on supported platforms.
What types of attacks can exploit CVE-2012-5257?
CVE-2012-5257 can be exploited through crafted Flash files or web content, potentially allowing attackers to execute arbitrary code.
Is Adobe AIR affected by CVE-2012-5257?
Yes, CVE-2012-5257 affects Adobe AIR versions prior to 3.4.0.2710.