Vulnerabilities > CVE-2014-0500 - Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adobe Shockwave Player
Adobe Shockwave Player before allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-0501.
NASL family MacOS X Local Security Checks NASL id MACOSX_SHOCKWAVE_PLAYER_APSB14-06.NASL description The remote Mac OS X host contains a version of Adobe Shockwave Player that is prior to or equal to It is, therefore, affected by two unspecified memory corruption vulnerabilities. A remote attacker can exploit these issues by tricking a user into viewing a malicious Shockwave file, resulting in arbitrary code execution. last seen 2020-06-01 modified 2020-06-02 plugin id 80188 published 2014-12-22 reporter This script is Copyright (C) 2014-2019 and is owned by Tenable, Inc. or an Affiliate thereof. source title Adobe Shockwave Player <= Multiple Memory Corruption Vulnerabilities (APSB14-06) (Mac OS X) code # # (C) Tenable Network Security, Inc. # include(""); if (description) { script_id(80188); script_version("1.5"); script_cvs_date("Date: 2019/11/25"); script_cve_id("CVE-2014-0500", "CVE-2014-0501"); script_bugtraq_id(65490, 65493); script_name(english:"Adobe Shockwave Player <= Multiple Memory Corruption Vulnerabilities (APSB14-06) (Mac OS X)"); script_summary(english:"Checks the version of Shockwave Player."); script_set_attribute(attribute:"synopsis", value: "The remote Mac OS X host contains a web browser plugin that is affected by multiple memory corruption vulnerabilities."); script_set_attribute(attribute:"description", value: "The remote Mac OS X host contains a version of Adobe Shockwave Player that is prior to or equal to It is, therefore, affected by two unspecified memory corruption vulnerabilities. A remote attacker can exploit these issues by tricking a user into viewing a malicious Shockwave file, resulting in arbitrary code execution."); script_set_attribute(attribute:"see_also", value:""); script_set_attribute(attribute:"solution", value: "Upgrade to Adobe Shockwave Player or later."); script_set_cvss_base_vector("CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C"); script_set_cvss_temporal_vector("CVSS2#E:U/RL:OF/RC:C"); script_set_attribute(attribute:"cvss_score_source", value:"CVE-2014-0501"); script_set_attribute(attribute:"exploitability_ease", value:"No known exploits are available"); script_set_attribute(attribute:"exploit_available", value:"false"); script_set_attribute(attribute:"vuln_publication_date", value:"2014/02/11"); script_set_attribute(attribute:"patch_publication_date", value:"2014/02/11"); script_set_attribute(attribute:"plugin_publication_date", value:"2014/12/22"); script_set_attribute(attribute:"plugin_type", value:"local"); script_set_attribute(attribute:"cpe", value:"cpe:/a:adobe:shockwave_player"); script_end_attributes(); script_category(ACT_GATHER_INFO); script_family(english:"MacOS X Local Security Checks"); script_copyright(english:"This script is Copyright (C) 2014-2019 and is owned by Tenable, Inc. or an Affiliate thereof."); script_dependencies("shockwave_player_detect_macosx.nbin"); script_require_keys("installed_sw/Shockwave Player", "Host/MacOSX/Version"); exit(0); } include(""); include(""); include(""); include(""); os = get_kb_item("Host/MacOSX/Version"); if (!os) audit(AUDIT_OS_NOT, "Mac OS X"); app = 'Shockwave Player'; get_install_count(app_name:app, exit_if_zero:TRUE); install = get_single_install(app_name:app, exit_if_unknown_ver:TRUE); ver = install['version']; path = install['path']; if (ver_compare(ver:ver, fix:'', strict:FALSE) <= 0) { if (report_verbosity > 0) { report = '\n Path : ' + path + '\n Installed version : ' + ver + '\n Fixed versions :' + '\n'; security_hole(port:0, extra:report); } else security_hole(port:0); } else audit(AUDIT_INST_PATH_NOT_VULN, app, ver, path);
NASL family Windows NASL id SHOCKWAVE_PLAYER_APSB14-06.NASL description The remote Windows host contains a version of Adobe last seen 2020-06-01 modified 2020-06-02 plugin id 72435 published 2014-02-12 reporter This script is Copyright (C) 2014-2019 and is owned by Tenable, Inc. or an Affiliate thereof. source title Shockwave Player <= Multiple Memory Corruption Vulnerabilities (APSB14-06) code # # (C) Tenable Network Security, Inc. # include(""); if (description) { script_id(72435); script_version("1.7"); script_cvs_date("Date: 2019/11/26"); script_cve_id("CVE-2014-0500", "CVE-2014-0501"); script_bugtraq_id(65490, 65493); script_name(english:"Shockwave Player <= Multiple Memory Corruption Vulnerabilities (APSB14-06)"); script_summary(english:"Checks version of Shockwave Player"); script_set_attribute(attribute:"synopsis", value: "The remote Windows host contains a web browser plugin that is affected by multiple memory corruption vulnerabilities."); script_set_attribute(attribute:"description", value: "The remote Windows host contains a version of Adobe's Shockwave Player that is prior to or equal to It is, therefore, potentially affected by two unspecified memory corruption vulnerabilities. A remote attacker could exploit these issues by tricking a user into viewing a malicious Shockwave file, resulting in arbitrary code execution."); script_set_attribute(attribute:"see_also", value:""); script_set_attribute(attribute:"solution", value: "Upgrade to Adobe Shockwave Player or later."); script_set_cvss_base_vector("CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C"); script_set_cvss_temporal_vector("CVSS2#E:U/RL:OF/RC:C"); script_set_attribute(attribute:"cvss_score_source", value:"CVE-2014-0501"); script_set_attribute(attribute:"exploitability_ease", value:"No known exploits are available"); script_set_attribute(attribute:"exploit_available", value:"false"); script_set_attribute(attribute:"vuln_publication_date", value:"2014/02/11"); script_set_attribute(attribute:"patch_publication_date", value:"2014/02/11"); script_set_attribute(attribute:"plugin_publication_date", value:"2014/02/12"); script_set_attribute(attribute:"plugin_type", value:"local"); script_set_attribute(attribute:"cpe", value:"cpe:/a:adobe:shockwave_player"); script_end_attributes(); script_category(ACT_GATHER_INFO); script_family(english:"Windows"); script_copyright(english:"This script is Copyright (C) 2014-2019 and is owned by Tenable, Inc. or an Affiliate thereof."); script_dependencies("shockwave_player_apsb09_08.nasl"); script_require_keys("SMB/shockwave_player"); exit(0); } include(""); include(""); include(""); installs = get_kb_list_or_exit("SMB/shockwave_player/*/path"); appname = "Shockwave Player"; latest_vuln_version = ""; # versions <= this version are vuln fix = ""; info = NULL; pattern = "SMB/shockwave_player/([^/]+)/([^/]+)/path"; vuln = 0; foreach install (keys(installs)) { match = eregmatch(string:install, pattern:pattern); if (!match) exit(1, "Unexpected format of KB key '" + install + "'."); file = installs[install]; variant = match[1]; version = match[2]; if (ver_compare(ver:version, fix:latest_vuln_version) <= 0) { if (variant == "Plugin") info += '\n Variant : Browser Plugin (for Firefox / Netscape / Opera)'; else if (variant == "ActiveX") info += '\n Variant : ActiveX control (for Internet Explorer)'; info += '\n File : ' + file + '\n Installed version : ' + version + '\n Fixed version : ' + fix + '\n'; vuln++; } } if (!info) audit(AUDIT_INST_VER_NOT_VULN, appname); port = get_kb_item("SMB/transport"); if (!port) port = 445; if (report_verbosity > 0) { if (vuln > 1) s = "s"; else s = ""; report = '\n' + 'Nessus has identified the following vulnerable instance' + s + ' of Shockwave'+ '\n' + 'Player installed on the remote host :' + '\n' + info + '\n'; security_hole(port:port, extra:report); } else security_hole(port);
bulletinFamily exploit description BUGTRAQ ID: 65490 CVE(CAN) ID: CVE-2014-0500 Adobe Shockwave Player是播放使用Macromedia和Adobe Director制作的网页内容的软件。 Adobe Shockwave Player及之前版本在实现上存在远程内存破坏漏洞,攻击者可利用此漏洞在受影响应用用户上下文中执行任意代码。 0 Adobe Shockwave Player < 厂商补丁: Adobe ----- Adobe已经为此发布了一个安全公告(apsb14-06)以及相应补丁: apsb14-06:Adobe Shockwave Player Security Update for February 2014 链接: id SSV:61447 last seen 2017-11-19 modified 2014-02-13 published 2014-02-13 reporter Root title Adobe Shockwave Player内存破坏漏洞(CVE-2014-0501) bulletinFamily exploit description BUGTRAQ ID: 65490 CVE(CAN) ID: CVE-2014-0500 Adobe Shockwave Player是播放使用Macromedia和Adobe Director制作的网页内容的软件。 Adobe Shockwave Player及之前版本在实现上存在远程内存破坏漏洞,攻击者可利用此漏洞在受影响应用用户上下文中执行任意代码。 0 Adobe Shockwave Player < 厂商补丁: Adobe ----- Adobe已经为此发布了一个安全公告(apsb14-06)以及相应补丁: apsb14-06:Adobe Shockwave Player Security Update for February 2014 链接: id SSV:61448 last seen 2017-11-19 modified 2014-02-13 published 2014-02-13 reporter Root title Adobe Shockwave Player内存破坏漏洞(CVE-2014-0500)
