CVE-2014-0491: Critical severity Adobe Flash Player vulnerability
Adobe Flash Player before 11.7.700.260 and 11.8.x and 11.9.x before 12.0.0.38 on Windows and Mac OS X and before 11.2.202.335 on Linux, Adobe AIR before 4.0.0.1390, Adobe AIR SDK before 4.0.0.1390, and Adobe AIR SDK & Compiler before 4.0.0.1390 allow attackers to bypass unspecified protection mechanisms via unknown vectors.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2014-0491?
CVE-2014-0491 has been assigned a high severity rating due to its potential to allow attackers to bypass security protections.
How do I fix CVE-2014-0491?
To fix CVE-2014-0491, you need to update Adobe Flash Player to version 11.7.700.260 or later, and Adobe AIR to version 4.0.0.1390 or later.
Which versions are affected by CVE-2014-0491?
CVE-2014-0491 affects Adobe Flash Player versions prior to 11.7.700.260, 11.8.x, 11.9.x prior to 12.0.0.38, and Adobe AIR versions below 4.0.0.1390.
What platforms are vulnerable to CVE-2014-0491?
CVE-2014-0491 is vulnerable on Windows, Mac OS X, and Linux systems running the affected versions of Adobe Flash and AIR.
Is CVE-2014-0491 exploitable remotely?
Yes, CVE-2014-0491 can be exploited remotely, allowing attackers to run arbitrary code on a vulnerable machine.