CVE-2011-2135

high

Description

Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR before 2.7.1 on Windows and Mac OS X and before 2.7.1.1961 on Android, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2140, CVE-2011-2417, and CVE-2011-2425.

References

https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16061

https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14016

http://www.us-cert.gov/cas/techalerts/TA11-222A.html

http://www.redhat.com/support/errata/RHSA-2011-1144.html

http://www.adobe.com/support/security/bulletins/apsb11-21.html

http://secunia.com/advisories/48308

http://lists.opensuse.org/opensuse-security-announce/2011-08/msg00008.html

http://lists.opensuse.org/opensuse-security-announce/2011-08/msg00007.html

http://lists.opensuse.org/opensuse-security-announce/2011-08/msg00006.html

Details

Source: Mitre, NVD

Published: 2011-08-10

Risk Information

CVSS v2

Base Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Severity: Critical

CVSS v3

Base Score: 8.1

Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: High