Red Hat Bugzilla – Bug 830310
CVE-2012-2034 CVE-2012-2035 CVE-2012-2036 CVE-2012-2037 CVE-2012-2039 flash-plugin: multiple code execution flaws (APSB12-14)
Last modified: 2012-06-12 11:08:23 EDT
Adobe security bulletin APSB12-14 describes numerous security flaws that can lead to arbitrary code execution when a malicious SWF file is opened in Adobe Flash Player: These updates resolve a memory corruption vulnerability that could lead to code execution (CVE-2012-2034). These updates resolve a stack overflow vulnerability that could lead to code execution (CVE-2012-2035). These updates resolve an integer overflow vulnerability that could lead to code execution (CVE-2012-2036). These updates resolve a memory corruption vulnerability that could lead to code execution (CVE-2012-2037). These updates resolve null dereference vulnerabilities that could lead to code execution (CVE-2012-2039). External References: http://www.adobe.com/support/security/bulletins/apsb12-14.html
This issue has been addressed in following products: Supplementary for Red Hat Enterprise Linux 6 Supplementary for Red Hat Enterprise Linux 5 Via RHSA-2012:0722 https://rhn.redhat.com/errata/RHSA-2012-0722.html