CVE-2012-2038
Last modified
CVE-2012-2038 is a vulnerability of currently unknown severity. Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac OS X; before 10.3.183.20 and 11.x before 11.2.202.236 on Linux; before 11.1.111.10 on Android 2.x and 3.x; and before 11.1.115.9 on Android 4.x, and Adobe AIR before 3.3.0.3610, allows attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors.. EPSS estimates a 3.65% chance of exploitation in the next 30 days.
Description
Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac OS X; before 10.3.183.20 and 11.x before 11.2.202.236 on Linux; before 11.1.111.10 on Android 2.x and 3.x; and before 11.1.115.9 on Android 4.x, and Adobe AIR before 3.3.0.3610, allows attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Adobe | Flash Player | <= 11.2.202.235 | — |
| Adobe | Flash Player | <= 11.1.115.8 | — |
| Adobe | Flash Player | <= 11.1.111.9 | — |
| Adobe | Air | <= 3.2.0.2070 | — |
| Opensuse | Opensuse | 11.4 | — |
| Opensuse | Opensuse | 12.1 | — |
| Suse | Linux Enterprise Desktop | 10 | Sp4 |
| Suse | Linux Enterprise Desktop | 11 | Sp1 |
| Redhat | Enterprise Linux Desktop | 5.0 | — |
| Redhat | Enterprise Linux Desktop | 6.0 | — |
| Redhat | Enterprise Linux Eus | 6.2 | — |
| Redhat | Enterprise Linux Server | 5.0 | — |
| Redhat | Enterprise Linux Server | 6.0 | — |
| Redhat | Enterprise Linux Server Aus | 6.2 | — |
| Redhat | Enterprise Linux Workstation | 5.0 | — |
| Redhat | Enterprise Linux Workstation | 6.0 | — |
References
- http://lists.opensuse.org/opensuse-security-announce/2012-06/msg00006.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2012-06/msg00007.htmlMailing List, Third Party Advisory
- http://rhn.redhat.com/errata/RHSA-2012-0722.htmlThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2012-06/msg00006.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2012-06/msg00007.htmlMailing List, Third Party Advisory
- http://rhn.redhat.com/errata/RHSA-2012-0722.htmlThird Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2012-2038?
How severe is CVE-2012-2038?
How do I fix CVE-2012-2038?
Are you affected by CVE-2012-2038?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
