CVE-2013-0639: Integer Overflow
Integer overflow in Adobe Flash Player before 10.3.183.63 and 11.x before 11.6.602.168 on Windows, before 10.3.183.61 and 11.x before 11.6.602.167 on Mac OS X, before 10.3.183.61 and 11.x before 11.2.202.270 on Linux, before 11.1.111.43 on Android 2.x and 3.x, and before 11.1.115.47 on Android 4.x; Adobe AIR before 3.6.0.597; and Adobe AIR SDK before 3.6.0.599 allows attackers to execute arbitrary code via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0639?
CVE-2013-0639 has been classified as a critical vulnerability due to the potential for arbitrary code execution.
How do I fix CVE-2013-0639?
To mitigate CVE-2013-0639, users should update Adobe Flash Player to versions 10.3.183.63 or 11.6.602.168 or later.
What versions of Adobe Flash Player are affected by CVE-2013-0639?
CVE-2013-0639 affects Adobe Flash Player versions before 10.3.183.63, 11.x before 11.6.602.168 on Windows, and various earlier versions on other platforms.
Is CVE-2013-0639 applicable to mobile versions of Adobe Flash Player?
Yes, CVE-2013-0639 affects Adobe Flash Player versions prior to 11.1.111.43 on Android 2.x and 3.x devices.
What types of attacks could exploit CVE-2013-0639?
CVE-2013-0639 could be exploited through crafted Flash content that leads to an integer overflow, potentially allowing an attacker to execute arbitrary code.