Lucene search

K
cve[email protected]CVE-2015-0353
HistoryApr 14, 2015 - 10:59 p.m.

CVE-2015-0353

2015-04-1422:59:07
web.nvd.nist.gov
52
In Wild
cve-2015-0353
adobe flash player
arbitrary code execution
dos
memory corruption
nvd
cve

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.8 High

AI Score

Confidence

Low

0.934 High

EPSS

Percentile

99.1%

Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.

Affected configurations

NVD
Node
adobeflash_playerRange11.2.202.451
AND
linuxlinux_kernelMatch-
Node
opensuseopensuseMatch13.1
OR
opensuseopensuseMatch13.2
OR
susesuse_linux_enterprise_desktopMatch11.0sp3
OR
susesuse_linux_enterprise_desktopMatch12.0
OR
susesuse_linux_workstation_extensionMatch12.0
Node
adobeflash_playerRange13.0.0.264
OR
adobeflash_playerMatch14.0.0.125
OR
adobeflash_playerMatch14.0.0.145
OR
adobeflash_playerMatch14.0.0.176
OR
adobeflash_playerMatch14.0.0.179
OR
adobeflash_playerMatch15.0.0.152
OR
adobeflash_playerMatch15.0.0.167
OR
adobeflash_playerMatch15.0.0.189
OR
adobeflash_playerMatch15.0.0.223
OR
adobeflash_playerMatch15.0.0.239
OR
adobeflash_playerMatch15.0.0.246
OR
adobeflash_playerMatch16.0.0.235
OR
adobeflash_playerMatch16.0.0.257
OR
adobeflash_playerMatch16.0.0.287
OR
adobeflash_playerMatch16.0.0.296
OR
adobeflash_playerMatch17.0.0.134
AND
applemac_os_xMatch-
OR
microsoftwindowsMatch-
Node
redhatenterprise_linux_desktop_supplementaryMatch5.0
OR
redhatenterprise_linux_desktop_supplementaryMatch6.0
OR
redhatenterprise_linux_server_supplementaryMatch5.0
OR
redhatenterprise_linux_server_supplementaryMatch6.0
OR
redhatenterprise_linux_server_supplementary_eusMatch6.6.z
OR
redhatenterprise_linux_workstation_supplementaryMatch6.0

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.8 High

AI Score

Confidence

Low

0.934 High

EPSS

Percentile

99.1%