SMTP: Adobe Flash Player CVE-2014-0502 Use After Free

This signature detects attempts to exploit a known vulnerability in Adobe Flash Player. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the targeted application.

Extended Description

Double free vulnerability in Adobe Flash Player before 11.7.700.269 and 11.8.x through 12.0.x before 12.0.0.70 on Windows and Mac OS X and before 11.2.202.341 on Linux, Adobe AIR before 4.0.0.1628 on Android, Adobe AIR SDK before 4.0.0.1628, and Adobe AIR SDK & Compiler before 4.0.0.1628 allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in February 2014.

Affected Products

Redhat enterprise_linux_server

References

BugTraq: 65702

CVE: CVE-2014-0502

Short Name
SMTP:EXPLOIT:CVE-2014-0502-UAF
Severity
Major
Recommended
False
Recommended Action
None
Category
SMTP
Keywords
Adobe After CVE-2014-0502 Flash Free Player Use bid:65702
Release Date
12/21/2017
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3743
False Positive
Unknown
Vendors

Opensuse

Suse

Adobe

Redhat

CVSS Score

10.0

Found a potential security threat?