HIGH
flash-plugin: multiple code execution issues fixed in APSB15-06
Published Apr 14, 2015
10.0
HIGHCVSS 2.0
EPSS 6.74%
Description
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code by leveraging an unspecified "type confusion."
Affected products
No data.
Configuration 1
AND
- ≤ 11.2.202.451
Running on/with
- n/a
Configuration 2
AND
OR
- ≤ 13.0.0.264
- 14.0.0.125
- 14.0.0.145
- 14.0.0.176
- 14.0.0.179
- 15.0.0.152
- 15.0.0.167
- 15.0.0.189
- 15.0.0.223
- 15.0.0.239
- 15.0.0.246
- 16.0.0.235
- 16.0.0.257
- 16.0.0.287
- 16.0.0.296
- 17.0.0.134
No data.
Red Hat Enterprise Linux 5 Supplementary
flash-plugin-0:11.2.202.457-1.el5
Fixed · RHSA-2015:0813
Supplementary for Red Hat Enterprise Linux 6
flash-plugin-0:11.2.202.457-1.el6_6
Fixed · RHSA-2015:0813
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 5 Supplementary | flash-plugin-0:11.2.202.457-1.el5 | Fixed | RHSA-2015:0813 |
| Supplementary for Red Hat Enterprise Linux 6 | flash-plugin-0:11.2.202.457-1.el6_6 | Fixed | RHSA-2015:0813 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (13)
- http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00010.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00011.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00012.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00013.html vendor-advisoryx_refsource_SUSE
- http://rhn.redhat.com/errata/RHSA-2015-0813.html vendor-advisoryx_refsource_REDHAT
- http://www.securitytracker.com/id/1032105 vdb-entryx_refsource_SECTRACK
- https://access.redhat.com/security/cve/CVE-2015-0356 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1211869 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2015-0369 Advisory
- https://helpx.adobe.com/security/products/flash-player/apsb15-06.html x_refsource_CONFIRMPatchVendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2015-0356
- https://security.gentoo.org/glsa/201504-07 vendor-advisoryx_refsource_GENTOO
- https://www.cve.org/CVERecord?id=CVE-2015-0356
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner adobe
Published Apr 14, 2015
Updated Aug 6, 2024
Reserved Dec 1, 2014
Link CVE-2015-0356
CISA Vulnrichment
No data
GitHub
No data