5
CVSSv2

CVE-2015-3097

Published: 10/06/2015 Updated: 22/09/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Adobe Flash Player prior to 13.0.0.292 and 14.x up to and including 18.x prior to 18.0.0.160, Adobe AIR prior to 18.0.0.144, Adobe AIR SDK prior to 18.0.0.144, and Adobe AIR SDK & Compiler prior to 18.0.0.144 on 64-bit Windows 7 systems do not properly select a random memory address for the Flash heap, which makes it easier for malicious users to conduct unspecified attacks by predicting this address.

Vulnerable Product Search on Vulmon Subscribe to Product

adobe flash_player

adobe flash_player 14.0.0.125

adobe flash_player 15.0.0.223

adobe flash_player 15.0.0.239

adobe flash_player 17.0.0.169

adobe flash_player 17.0.0.188

adobe air_sdk_\\&_compiler

adobe flash_player 14.0.0.179

adobe flash_player 15.0.0.152

adobe flash_player 16.0.0.257

adobe flash_player 16.0.0.287

adobe air_sdk

adobe air

adobe flash_player 15.0.0.167

adobe flash_player 15.0.0.189

adobe flash_player 16.0.0.296

adobe flash_player 17.0.0.134

adobe flash_player 14.0.0.145

adobe flash_player 14.0.0.176

adobe flash_player 15.0.0.246

adobe flash_player 16.0.0.235

microsoft windows_7