CVE-2013-5332: Code Injection
Adobe Flash Player before 11.7.700.257 and 11.8.x and 11.9.x before 11.9.900.170 on Windows and Mac OS X and before 11.2.202.332 on Linux, Adobe AIR before 3.9.0.1380, Adobe AIR SDK before 3.9.0.1380, and Adobe AIR SDK & Compiler before 3.9.0.1380 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2013-5332?
CVE-2013-5332 is considered critical due to its ability to allow attackers to execute arbitrary code.
How do I fix CVE-2013-5332?
To fix CVE-2013-5332, upgrade Adobe Flash Player to version 11.7.700.257 or later.
What software is affected by CVE-2013-5332?
CVE-2013-5332 affects Adobe Flash Player versions before 11.7.700.257 on various platforms including Windows and Mac OS X.
Can CVE-2013-5332 be exploited remotely?
Yes, CVE-2013-5332 can be exploited remotely if a user visits a crafted web page that contains malicious content.
Is Adobe AIR affected by CVE-2013-5332?
Yes, Adobe AIR versions before 3.9.0.1380 are also vulnerable to CVE-2013-5332.