9.3
CVSSv2

CVE-2015-7629

Published: 15/10/2015 Updated: 01/07/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Use-after-free vulnerability in Adobe Flash Player prior to 18.0.0.252 and 19.x prior to 19.0.0.207 on Windows and OS X and prior to 11.2.202.535 on Linux, Adobe AIR prior to 19.0.0.213, Adobe AIR SDK prior to 19.0.0.213, and Adobe AIR SDK & Compiler prior to 19.0.0.213 allows malicious users to execute arbitrary code via a TextFormat object with a crafted tabStops property, a different vulnerability than CVE-2015-7631, CVE-2015-7643, and CVE-2015-7644.

Vulnerable Product Search on Vulmon Subscribe to Product

adobe flash_player

adobe air_sdk_\\&_compiler

adobe air_sdk

adobe air

Vendor Advisories

Use-after-free vulnerability in Adobe Flash Player before 1800252 and 19x before 1900207 on Windows and OS X and before 112202535 on Linux, Adobe AIR before 1900213, Adobe AIR SDK before 1900213, and Adobe AIR SDK & Compiler before 1900213 allows attackers to execute arbitrary code via a TextFormat object with a crafted tabSt ...