RULE(RULE ID:316824)

Rule General Information
Release Date: 2016-12-07
Rule Name: FILE-FLASH Adobe Flash Player and AIR Remote Integer Overflow Vulnerability -3 (CVE-2015-3087)
Severity:
CVE ID:
Rule Protection Details
Description: Integer overflow in Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK & Compiler before 17.0.0.172 allows attackers to execute arbitrary code via unspecified vectors.
Impact: An attacker can exploit the affected software with a integer overflow vulnerability. Successful exploit leads to execute arbitrary code, and failed exploit may disturb the software logic and cause denial of service.
Affected OS: Windows
Reference: SecurityFocusBID:74616
SecurityTrackerID:1032285
AdobeSecurityBulletins:apsb15-09
Solutions
Adobe has issued a fix on the official website. For more advisory, please visit https://helpx.adobe.com/security/products/flash-player/apsb15-09.html