First published: Wed May 14 2014(Updated: )
Adobe Flash Player before 13.0.0.214 on Windows and OS X and before 11.2.202.359 on Linux, Adobe AIR SDK before 13.0.0.111, and Adobe AIR SDK & Compiler before 13.0.0.111 allow attackers to bypass intended access restrictions via unspecified vectors, a different vulnerability than CVE-2014-0518, CVE-2014-0519, and CVE-2014-0520.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Acrobat Reader | >=13.0<13.0.0.214 | |
Apple iOS and macOS | ||
Microsoft Windows | ||
Adobe Acrobat Reader | >=11.0<11.2.202.359 | |
Linux Kernel | ||
Adobe AIR SDK | <13.0.0.111 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-0517 has a medium severity rating due to its potential to allow attackers to bypass access restrictions.
To fix CVE-2014-0517, update Adobe Flash Player to version 13.0.0.214 or later on Windows and OS X, or version 11.2.202.359 or later on Linux.
CVE-2014-0517 affects Adobe Flash Player versions before 13.0.0.214 on Windows and OS X and versions before 11.2.202.359 on Linux, along with Adobe AIR SDK versions before 13.0.0.111.
Yes, CVE-2014-0517 can be exploited remotely through unspecified vectors, allowing attackers to bypass security measures.
The potential impacts of CVE-2014-0517 include unauthorized access to sensitive data or the ability to perform malicious actions on affected systems.