vendor:
Flash Player
by:
Unknown, hdarwin, juan vazquez
7.5
CVSS
HIGH
Use After Free
416
CWE
Product Name: Flash Player
Affected Version From: Flash 16.0.0.235
Affected Version To: Flash 16.0.0.287
Patch Exists: YES
Related CWE: CVE-2015-0311
CPE: a:adobe:flash_player
Metasploit:
https://www.rapid7.com/db/vulnerabilities/freebsd-vid-37a87ade-a59f-11e4-958e-0011d823eebd/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2015-0311/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2015-0094/, https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2015-0311/, https://www.rapid7.com/db/vulnerabilities/adobe-flash-apsb15-03-cve-2015-0311/
Platforms Tested: Windows
2015
Adobe Flash Player ByteArray UncompressViaZlibVariant Use After Free
This module exploits an use after free vulnerability in Adobe Flash Player. The vulnerability occurs in the ByteArray::UncompressViaZlibVariant method, when trying to uncompress() a malformed byte stream. This module has been tested successfully on Windows 7 SP1 (32 bits), IE 8 to IE 11 and Flash 16.0.0.287, 16.0.0.257 and 16.0.0.235.
Mitigation:
Update to the latest version of Adobe Flash Player.