CVE-2012-5272: Buffer Overflow
Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.2710; and Adobe AIR SDK before 3.4.0.2710 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than other Flash Player memory corruption CVEs listed in APSB12-22.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2012-5272?
CVE-2012-5272 has been rated with a critical severity, allowing for arbitrary code execution under certain circumstances.
How do I fix CVE-2012-5272?
To mitigate CVE-2012-5272, you should update Adobe Flash Player and Adobe AIR to the latest versions recommended by Adobe.
What platforms are affected by CVE-2012-5272?
CVE-2012-5272 affects Adobe Flash Player on Windows, Mac OS X, Linux, and Android platforms.
What versions of Adobe Flash Player are vulnerable to CVE-2012-5272?
Adobe Flash Player versions prior to 10.3.183.29 and various versions of 11.x are affected by CVE-2012-5272.
Is Adobe AIR affected by CVE-2012-5272?
Yes, CVE-2012-5272 affects Adobe AIR versions before 3.4.0.2710.