Permissions, Privileges, and Access Controls in Adobe AIR - CVE-2014-0519
Published: May 14, 2014 / Updated: August 10, 2020
Adobe AIR
Detailed vulnerability description
The vulnerability allows a remote non-authenticated attacker to read and manipulate data.
Adobe Flash Player before 13.0.0.214 on Windows and OS X and before 11.2.202.359 on Linux, Adobe AIR SDK before 13.0.0.111, and Adobe AIR SDK & Compiler before 13.0.0.111 allow attackers to bypass intended access restrictions via unspecified vectors, a different vulnerability than CVE-2014-0517, CVE-2014-0518, and CVE-2014-0520.
How to mitigate CVE-2014-0519
Sources
- http://helpx.adobe.com/security/products/flash-player/apsb14-14.html
- http://lists.opensuse.org/opensuse-security-announce/2014-05/msg00008.html
- http://lists.opensuse.org/opensuse-updates/2014-05/msg00051.html
- http://rhn.redhat.com/errata/RHSA-2014-0496.html
- http://security.gentoo.org/glsa/glsa-201406-08.xml