vendor:
Adobe Flash Player
by:
Google Security Research
9.3
CVSS
HIGH
Adobe Flash Player Access Violation
119
CWE
Product Name: Adobe Flash Player
Affected Version From: Adobe Flash Player versions prior to 18.0.0.252
Affected Version To: Adobe Flash Player versions prior to 18.0.0.252
Patch Exists: YES
Related CWE: CVE-2015-7645
CPE: o:adobe:flash_player:18.0.0.252
Metasploit:
https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2015-2024/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2015-1913/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2015-7645/, https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2015-7645/, https://www.rapid7.com/db/vulnerabilities/adobe-flash-apsb15-27-cve-2015-7645/
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows, Linux, Mac
2015
Adobe Flash Player Access Violation
An access violation was observed in the Adobe Flash Player plugin, which could allow an attacker to execute arbitrary code on the vulnerable system. The vulnerability is caused by a memory corruption issue when handling specially crafted Flash content.
Mitigation:
Adobe has released a security update to address this vulnerability.