|
|||
Rule General Information |
---|
Release Date: | 2015-01-14 | |
Rule Name: | Adobe Flash Player and AIR Unspecified Heap Based Buffer Overflow Vulnerability (CVE-2015-0304) | |
Severity: | ||
CVE ID: | ||
CNNVD ID: | ||
Rule Protection Details |
---|
Description: | Heap-based buffer overflow in Adobe Flash Player before 13.0.0.260 and 14.x through 16.x before 16.0.0.257 on Windows and OS X and before 11.2.202.429 on Linux, Adobe AIR before 16.0.0.245 on Windows and OS X and before 16.0.0.272 on Android, Adobe AIR SDK before 16.0.0.272, and Adobe AIR SDK & Compiler before 16.0.0.272 allows attackers to execute arbitrary code via unspecified vectors. | |
Impact: | A buffer overflow vulnerability can be triggered by an attacker in the context of the vulnerable product. Further attacks includes arbitrary code execution and denial of service. | |
Affected OS: | Windows | |
Reference: | AdobeSecurityBulletins:apsb15-01 SecurityFocusBID:72032 SecurityTrackerID:1031525 |
|
Solutions |
---|
Adobe has issued a fix on the official website. For more advisory, please visit http://helpx.adobe.com/security/products/flash-player/apsb15-01.html |