CVE-2012-5265: Buffer Overflow
Buffer overflow in Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.2710; and Adobe AIR SDK before 3.4.0.2710 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than other Flash Player buffer overflow CVEs listed in APSB12-22.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-5265?
CVE-2012-5265 has been rated as critical due to the potential for remote code execution.
How do I fix CVE-2012-5265?
To fix CVE-2012-5265, update Adobe Flash Player to version 10.3.183.29 or later.
Which versions of Adobe Flash Player are affected by CVE-2012-5265?
CVE-2012-5265 affects Adobe Flash Player versions prior to 10.3.183.29 and all 11.x versions prior to 11.4.402.287.
What operating systems are impacted by CVE-2012-5265?
CVE-2012-5265 impacts Adobe Flash Player on Windows, Mac OS X, and Linux, as well as Adobe AIR and Adobe AIR SDK.
Is there a workaround for CVE-2012-5265 until a fix is applied?
A workaround for CVE-2012-5265 includes disabling Flash Player in the browser and avoiding untrusted content.