CVE-2013-5330

high

Description

Adobe Flash Player before 11.7.700.252 and 11.8.x and 11.9.x before 11.9.900.152 on Windows and Mac OS X and before 11.2.202.327 on Linux, Adobe AIR before 3.9.0.1210, Adobe AIR SDK before 3.9.0.1210, and Adobe AIR SDK & Compiler before 3.9.0.1210 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2013-5329.

References

http://www.adobe.com/support/security/bulletins/apsb13-26.html

http://rhn.redhat.com/errata/RHSA-2013-1518.html

http://lists.opensuse.org/opensuse-security-announce/2013-11/msg00019.html

http://lists.opensuse.org/opensuse-security-announce/2013-11/msg00016.html

http://lists.opensuse.org/opensuse-security-announce/2013-11/msg00015.html

Details

Source: Mitre, NVD

Published: 2013-11-13

Risk Information

CVSS v2

Base Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Severity: Critical

CVSS v3

Base Score: 8.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Severity: High