CVE-2015-3107
CVE-2015-3107
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before 11.2.202.466 on Linux, Adobe AIR before 18.0.0.144 on Windows and before 18.0.0.143 on OS X and Android, Adobe AIR SDK before 18.0.0.144 on Windows and before 18.0.0.143 on OS X, and Adobe AIR SDK & Compiler before 18.0.0.144 on Windows and before 18.0.0.143 on OS X allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3103 and CVE-2015-3106.
Affected products
n/a · n/apublic PoCs found — 2
exploitdbwww.exploit-db.com/exploits/37850unverifiedcve_referencewww.exploit-db.com/exploits/37850/unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00005.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-06/msg00009.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-06/msg00011.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-10/msg00018.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1086.htmlhttps://helpx.adobe.com/security/products/flash-player/apsb15-11.htmlhttps://security.gentoo.org/glsa/201506-01https://security.gentoo.org/glsa/201508-01https://www.exploit-db.com/exploits/37850/http://www.securityfocus.com/bid/75087http://www.securitytracker.com/id/1032519