Common Vulnerabilities and Exposures assigned an identifier CVE-2014-0510 to the following vulnerability: Name: CVE-2014-0510 URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0510 Assigned: 20131220 Reference: http://twitter.com/thezdi/statuses/444262022444621824 Reference: http://www.pwn2own.com/2014/03/pwn2own-results-thursday-day-two/ Heap-based buffer overflow in Adobe Flash Player 12.0.0.77 allows remote attackers to execute arbitrary code and bypass a sandbox protection mechanism via unspecified vectors, as demonstrated by Zeguang Zhao and Liang Chen during a Pwn2Own competition at CanSecWest 2014.
Statement: (none)
Adobe has released Flash Player 11.2.202.359 for Linux to correct the following flaw: * These updates resolve a use-after-free vulnerability that could result in arbitrary code execution (CVE-2014-0510). External References: http://helpx.adobe.com/security/products/flash-player/apsb14-14.html
This issue has been addressed in following products: Supplementary for Red Hat Enterprise Linux 5 Supplementary for Red Hat Enterprise Linux 6 Via RHSA-2014:0496 https://rhn.redhat.com/errata/RHSA-2014-0496.html