HTTP: Adobe Flash Player Firefox plugin Denial of Service

This signature detects attempts to exploit a known flaw in Adobe Flash Player. An attack can entice a user to load a malicious Flash file which can result in Denial of Service or arbitrary code execution in the victim's browser.

Extended Description

Adobe Flash Player before 10.3.183.23 and 11.x before 11.4.402.265 on Windows and Mac OS X, before 10.3.183.23 and 11.x before 11.2.202.238 on Linux, before 11.1.111.16 on Android 2.x and 3.x, and before 11.1.115.17 on Android 4.x; Adobe AIR before 3.4.0.2540; and Adobe AIR SDK before 3.4.0.2540 allow attackers to cause a denial of service (application crash) by leveraging a logic error during handling of Firefox dialogs.

Affected Products

Adobe adobe_air

References

CVE: CVE-2012-4171

Short Name
HTTP:STC:ADOBE:FLASH-FIREFOX
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Adobe CVE-2012-4171 Denial Firefox Flash Player Service of plugin
Release Date
10/19/2012
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3761
False Positive
Unknown
Vendors

Adobe

CVSS Score

5.0

Found a potential security threat?