Lucene search

K
cve[email protected]CVE-2015-0309
HistoryJan 13, 2015 - 11:59 p.m.

CVE-2015-0309

2015-01-1323:59:07
CWE-119
web.nvd.nist.gov
33
cve-2015-0309
adobe flash player
buffer overflow
security vulnerability
arbitrary code execution
nvd

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.8

Confidence

Low

EPSS

0.173

Percentile

96.1%

Heap-based buffer overflow in Adobe Flash Player before 13.0.0.260 and 14.x through 16.x before 16.0.0.257 on Windows and OS X and before 11.2.202.429 on Linux, Adobe AIR before 16.0.0.245 on Windows and OS X and before 16.0.0.272 on Android, Adobe AIR SDK before 16.0.0.272, and Adobe AIR SDK & Compiler before 16.0.0.272 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-0304.

Affected configurations

NVD
Node
adobeadobe_airRange15.0.0.356android
Node
adobeadobe_air_sdk_and_compilerRange15.0.0.356
Node
adobeflash_playerRange13.0.0.259
OR
adobeflash_playerMatch14.0.0.125
OR
adobeflash_playerMatch14.0.0.145
OR
adobeflash_playerMatch14.0.0.176
OR
adobeflash_playerMatch14.0.0.179
OR
adobeflash_playerMatch15.0.0.144
OR
adobeflash_playerMatch15.0.0.152
OR
adobeflash_playerMatch15.0.0.167
OR
adobeflash_playerMatch15.0.0.189
OR
adobeflash_playerMatch15.0.0.223
OR
adobeflash_playerMatch15.0.0.238
OR
adobeflash_playerMatch15.0.0.239
OR
adobeflash_playerMatch15.0.0.246
OR
adobeflash_playerMatch16.0.0.234
OR
adobeflash_playerMatch16.0.0.235
AND
applemac_os_x
OR
microsoftwindows
Node
adobeflash_playerMatch11.2.202.425
AND
linuxlinux_kernel
Node
adobeadobe_airRange15.0.0.356
AND
applemac_os_x
OR
microsoftwindows
Node
adobeadobe_air_sdkRange15.0.0.356
VendorProductVersionCPE
adobeadobe_aircpe:/a:adobe:adobe_air::::

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.8

Confidence

Low

EPSS

0.173

Percentile

96.1%