Adobe Flash Player before 10.3.183.23 and 11.x before 11.4.402.265 on Windows and Mac OS X, before 10.3.183.23 and 11.x before 11.2.202.238 on Linux, before 11.1.111.16 on Android 2.x and 3.x, and before 11.1.115.17 on Android 4.x; Adobe AIR before 3.4.0.2540; and Adobe AIR SDK before 3.4.0.2540 allow remote attackers to read content from a different domain via a crafted web site.
                
            References
                    | Link | Resource | 
|---|---|
| http://marc.info/?l=bugtraq&m=139455789818399&w=2 | Mailing List Third Party Advisory | 
| http://rhn.redhat.com/errata/RHSA-2012-1203.html | Third Party Advisory | 
| http://security.gentoo.org/glsa/glsa-201209-01.xml | Third Party Advisory | 
| http://www.adobe.com/support/security/bulletins/apsb12-19.html | Patch Vendor Advisory | 
| http://marc.info/?l=bugtraq&m=139455789818399&w=2 | Mailing List Third Party Advisory | 
| http://rhn.redhat.com/errata/RHSA-2012-1203.html | Third Party Advisory | 
| http://security.gentoo.org/glsa/glsa-201209-01.xml | Third Party Advisory | 
| http://www.adobe.com/support/security/bulletins/apsb12-19.html | Patch Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| AND | 
            
            
 
  | 
    
Configuration 2 (hide)
| AND | 
            
            
 
  | 
    
Configuration 3 (hide)
| AND | 
            
            
 
  | 
    
Configuration 4 (hide)
| AND | 
            
            
 
  | 
    
Configuration 5 (hide)
            
            
  | 
    
History
                    21 Nov 2024, 01:42
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () http://marc.info/?l=bugtraq&m=139455789818399&w=2 - Mailing List, Third Party Advisory | |
| References | () http://rhn.redhat.com/errata/RHSA-2012-1203.html - Third Party Advisory | |
| References | () http://security.gentoo.org/glsa/glsa-201209-01.xml - Third Party Advisory | |
| References | () http://www.adobe.com/support/security/bulletins/apsb12-19.html - Patch, Vendor Advisory | 
Information
                Published : 2012-08-21 23:55
Updated : 2025-04-11 00:51
NVD link : CVE-2012-4168
Mitre link : CVE-2012-4168
CVE.ORG link : CVE-2012-4168
JSON object : View
Products Affected
                - android
 
adobe
- flash_player
 - air
 - air_sdk
 
microsoft
- windows
 
apple
- mac_os_x
 
linux
- linux_kernel
 
CWE
                
                    
                        
                        CWE-200
                        
            Exposure of Sensitive Information to an Unauthorized Actor
