Описание
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.296 and 14.x through 18.x before 18.0.0.194 on Windows and OS X and before 11.2.202.468 on Linux allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in June 2015.
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.296 and 14.x through 18.x before 18.0.0.194 on Windows and OS X and before 11.2.202.468 on Linux allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in June 2015.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2015-3113
- https://github.com/cisagov/vulnrichment/issues/196
- https://bugzilla.redhat.com/show_bug.cgi?id=1235036
- https://bugzilla.suse.com/show_bug.cgi?id=935701
- https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04952467
- https://helpx.adobe.com/security/products/flash-player/apsb15-14.html
- https://security.gentoo.org/glsa/201507-13
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2015-3113
- https://www.suse.com/security/cve/CVE-2015-3113.html
- http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00020.html
- http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00025.html
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00002.html
- http://marc.info/?l=bugtraq&m=144050155601375&w=2
- http://rhn.redhat.com/errata/RHSA-2015-1184.html
- http://www.securityfocus.com/bid/75371
- http://www.securitytracker.com/id/1032696
EPSS
9.8 Critical
CVSS3
CVE ID
Дефекты
Связанные уязвимости
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.296 and 14.x through 18.x before 18.0.0.194 on Windows and OS X and before 11.2.202.468 on Linux allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in June 2015.
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.296 and 14.x through 18.x before 18.0.0.194 on Windows and OS X and before 11.2.202.468 on Linux allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in June 2015.
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.296 and 14.x through 18.x before 18.0.0.194 on Windows and OS X and before 11.2.202.468 on Linux allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in June 2015.
Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код
EPSS
9.8 Critical
CVSS3