Lucene search

K
cveAdobeCVE-2014-0587
HistoryDec 10, 2014 - 9:59 p.m.

CVE-2014-0587

2014-12-1021:59:01
CWE-94
adobe
web.nvd.nist.gov
55
cve-2014-0587
adobe flash player
code execution
denial of service
memory corruption

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.005

Percentile

76.1%

Adobe Flash Player before 13.0.0.259 and 14.x through 16.x before 16.0.0.235 on Windows and OS X and before 11.2.202.425 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-9164.

Affected configurations

Nvd
Node
adobeflash_playerRange13.013.0.0.259
OR
adobeflash_playerRange14.016.0.0.235
AND
applemac_os_x
OR
microsoftwindows
Node
adobeflash_playerRange11.011.2.202.425
AND
linuxlinux_kernel
VendorProductVersionCPE
adobeflash_player*cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*
applemac_os_x*cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*
microsoftwindows*cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*
linuxlinux_kernel*cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.005

Percentile

76.1%