HTTP: Adobe Flash Player CVE-2013-5331 Remote Code Execution

This signature detects attempts to exploit a known vulnerability in the Adobe Flash Player. A successful attack can lead to arbitrary code execution.

Extended Description

Adobe Flash Player before 11.7.700.257 and 11.8.x and 11.9.x before 11.9.900.170 on Windows and Mac OS X and before 11.2.202.332 on Linux, Adobe AIR before 3.9.0.1380, Adobe AIR SDK before 3.9.0.1380, and Adobe AIR SDK & Compiler before 3.9.0.1380 allow remote attackers to execute arbitrary code via crafted .swf content that leverages an unspecified "type confusion," as exploited in the wild in December 2013.

Affected Products

Adobe air

References

BugTraq: 64199

CVE: CVE-2013-5331

Short Name
HTTP:STC:ADOBE:CVE-2013-5331-CE
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Adobe CVE-2013-5331 Code Execution Flash Player Remote bid:64199
Release Date
12/27/2013
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3761
False Positive
Unknown
Vendors

Adobe

CVSS Score

9.3

Found a potential security threat?