CVE-2013-5331

Publication date 11 December 2013

Last updated 24 July 2024


Ubuntu priority

Adobe Flash Player before 11.7.700.257 and 11.8.x and 11.9.x before 11.9.900.170 on Windows and Mac OS X and before 11.2.202.332 on Linux, Adobe AIR before 3.9.0.1380, Adobe AIR SDK before 3.9.0.1380, and Adobe AIR SDK & Compiler before 3.9.0.1380 allow remote attackers to execute arbitrary code via crafted .swf content that leverages an unspecified “type confusion,” as exploited in the wild in December 2013.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
adobe-flashplugin 13.10 saucy
Fixed 11.2.202.332-0saucy1
13.04 raring
Fixed 11.2.202.332-0raring2
12.10 quantal
Fixed 11.2.202.332-0quantal2
12.04 LTS precise
Fixed 11.2.202.332-0precise2
10.04 LTS lucid Ignored end of life
flashplugin-nonfree 13.10 saucy
Fixed 11.2.202.332ubuntu0.12.10.1
13.04 raring
Fixed 11.2.202.332ubuntu0.13.04.1
12.10 quantal
Fixed 11.2.202.332ubuntu0.12.10.1
12.04 LTS precise
Fixed 11.2.202.332ubuntu0.12.04.1
10.04 LTS lucid Ignored end of life