This script is Copyright (C) 2011-2013 Tenable Network Security, Inc.
The remote Mac OS X host has a browser plugin that is affected by
According to its version, the instance of Flash Player installed on
the remote Mac OS X host is 10.3.181.36 or earlier. As such, it is
reportedly affected by several critical vulnerabilities :
- Multiple buffer overflow vulnerabilities could lead to
code execution. (CVE-2011-2130, CVE-2011-2134,
CVE-2011-2137, CVE-2011-2414, CVE-2011-2415)
- Multiple memory corruption vulnerabilities could lead to
code execution. (CVE-2011-2135, CVE-2011-2140,
CVE-2011-2417, CVE-2011-2424, CVE-2011-2425)
- Multiple integer overflow vulnerabilities could lead to
code execution. (CVE-2011-2136, CVE-2011-2138,
- A cross-site information disclosure vulnerability
exists that could lead to code execution.
By tricking a user on the affected system into opening a specially
crafted document with Flash content, an attacker could leverage these
vulnerabilities to execute arbitrary code remotely on the system
subject to the user's privileges.
See also :
Upgrade to Adobe Flash for Mac version 10.3.183.5 or later.
Risk factor :
High / CVSS Base Score : 9.3
CVSS Temporal Score : 7.3
Public Exploit Available : true
Family: MacOS X Local Security Checks
Nessus Plugin ID: 55804 ()
Bugtraq ID: 4907349074490754907649077490794908049081490824908349084490854908649186
CVE ID: CVE-2011-2130CVE-2011-2134CVE-2011-2135CVE-2011-2136CVE-2011-2137CVE-2011-2138CVE-2011-2139CVE-2011-2140CVE-2011-2414CVE-2011-2415CVE-2011-2416CVE-2011-2417CVE-2011-2424CVE-2011-2425
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.