Adobe Flash Player before 10.3.183.10 on Windows, Mac OS X, Linux, and Solaris, and before 10.3.186.7 on Android, allows attackers to execute arbitrary code or cause a denial of service (browser crash) via unspecified vectors, related to a "logic error issue."
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
Link | Tags |
---|---|
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13945 | signature vdb entry |
http://secunia.com/advisories/48308 | third party advisory |
http://lists.opensuse.org/opensuse-security-announce/2011-09/msg00025.html | vendor advisory |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16181 | signature vdb entry |
http://www.redhat.com/support/errata/RHSA-2011-1333.html | vendor advisory |
http://www.adobe.com/support/security/bulletins/apsb11-26.html | patch vendor advisory |