vendor:
Flash Player
by:
Unknown, Boris 'dukeBarman' Ryutin, juan vazquez
9,3
CVSS
HIGH
Heap Overflow
119
CWE
Product Name: Flash Player
Affected Version From: 11.0.0.0
Affected Version To: 11.5.502.149
Patch Exists: YES
Related CWE: CVE-2013-0634
CPE: a:adobe:flash_player:11.5.502.149
Metasploit:
https://www.rapid7.com/db/vulnerabilities/adobe-air-cve-2013-0634/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2013-0634/, https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2013-0634/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2013-0243/, https://www.rapid7.com/db/vulnerabilities/adobe-flash-apsb13-04-cve-2013-0634/
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP3 and Windows 7 SP1
2013
Adobe Flash Player Regular Expression Heap Overflow
This module exploits a vulnerability found in the ActiveX component of Adobe Flash Player before 11.5.502.149. By supplying a specially crafted swf file with special regex value, it is possible to trigger an memory corruption, which results in remote code execution under the context of the user, as exploited in the wild in February 2013. This module has been tested successfully with Adobe Flash Player 11.5 before 11.5.502.149 on Windows XP SP3 and Windows 7 SP1 before MS13-063, since it takes advantage of a predictable SharedUserData in order to leak ntdll and bypass ASLR.
Mitigation:
Adobe has released a patch for this vulnerability in Adobe Flash Player 11.5.502.149 and later.