Lucene search

K
cve[email protected]CVE-2015-5123
HistoryJul 14, 2015 - 10:59 a.m.

CVE-2015-5123

2015-07-1410:59:01
CWE-416
web.nvd.nist.gov
857
In Wild
cve
use-after-free
adobe flash player
as3
vulnerability
memory corruption
remote code execution

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

9.6 High

AI Score

Confidence

High

0.224 Low

EPSS

Percentile

96.5%

Use-after-free vulnerability in the BitmapData class in the ActionScript 3 (AS3) implementation in Adobe Flash Player 13.x through 13.0.0.302 on Windows and OS X, 14.x through 18.0.0.203 on Windows and OS X, 11.x through 11.2.202.481 on Linux, and 12.x through 18.0.0.204 on Linux Chrome installations allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted Flash content that overrides a valueOf function, as exploited in the wild in July 2015.

Affected configurations

NVD
Node
redhatenterprise_linux_desktopMatch5.0
OR
redhatenterprise_linux_desktopMatch6.0
OR
redhatenterprise_linux_serverMatch5.0
OR
redhatenterprise_linux_serverMatch6.0
OR
redhatenterprise_linux_server_eusMatch6.6
OR
redhatenterprise_linux_workstationMatch5.0
OR
redhatenterprise_linux_workstationMatch6.0
Node
opensuseevergreenMatch11.4
OR
suselinux_enterprise_desktopMatch11sp3
OR
suselinux_enterprise_desktopMatch11sp4
OR
suselinux_enterprise_desktopMatch12
OR
suselinux_enterprise_workstation_extensionMatch12
Node
adobeflash_playerRange11.011.2.202.481
AND
linuxlinux_kernelMatch-
Node
adobeflash_playerRange13.013.0.0.302esr
OR
adobeflash_playerRange18.018.0.0.203chrome
OR
adobeflash_player_desktop_runtimeRange18.018.0.0.203
AND
applemacosMatch-
OR
microsoftwindowsMatch-

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

9.6 High

AI Score

Confidence

High

0.224 Low

EPSS

Percentile

96.5%