10
CVSSv2

CVE-2015-3089

Published: 13/05/2015 Updated: 17/09/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Adobe Flash Player prior to 13.0.0.289 and 14.x up to and including 17.x prior to 17.0.0.188 on Windows and OS X and prior to 11.2.202.460 on Linux, Adobe AIR prior to 17.0.0.172, Adobe AIR SDK prior to 17.0.0.172, and Adobe AIR SDK & Compiler prior to 17.0.0.172 allow malicious users to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3078, CVE-2015-3090, and CVE-2015-3093.

Vulnerable Product Search on Vulmon Subscribe to Product

adobe air sdk

adobe air

adobe air sdk & compiler

adobe flash player

adobe flash player 14.0.0.125

adobe flash player 14.0.0.145

adobe flash player 14.0.0.176

adobe flash player 14.0.0.179

adobe flash player 15.0.0.152

adobe flash player 15.0.0.167

adobe flash player 15.0.0.189

adobe flash player 15.0.0.223

adobe flash player 15.0.0.239

adobe flash player 15.0.0.246

adobe flash player 16.0.0.235

adobe flash player 16.0.0.257

adobe flash player 16.0.0.287

adobe flash player 16.0.0.296

adobe flash player 17.0.0.134

adobe flash player 17.0.0.169

Exploits

Source: codegooglecom/p/google-security-research/issues/detail?id=316&can=1&q=label%3AProduct-Flash%20modified-after%3A2015%2F8%2F17&sort=id [Tracking for: codegooglecom/p/chromium/issues/detail?id=472201] Credit is to bilou, working with the Chromium Vulnerability Rewards Program --- VULNERABILITY DETAILS Loadin ...