Adobe Flash Player Multiple Vulnerabilities
Last Update Date:
13 May 2015 09:37
Release Date:
13 May 2015
4029
Views
RISK: High Risk
TYPE: Clients - Audio & Video
Multiple vulnerabilities have been identified in Adobe Flash Player, which can be exploited by remote attacker to run arbitrary code, bypass security restriction and disclose sensitive information.
Impact
- Remote Code Execution
- Security Restriction Bypass
- Information Disclosure
System / Technologies affected
- Adobe Flash Player 17.0.0.169 and earlier versions (Windows and Mac)
- Adobe Flash Player ESR 13.0.0.281 and earlier versions
- Adobe Flash Player 11.2.202.457 and earlier versions (Linux)
- AIR Desktop Runtime 17.0.0.144 and earlier versions
- AIR SDK and SDK & Compiler 17.0.0.144 and earlier versions
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- The vendor has issued a patch:
- Adobe Flash Player 17.0.0.188 (Windows and Mac), Adobe Flash Player ESR 13.0.0.289
- Adobe Flash Player 11.2.202.460 (Linux)
- Google Chrome and IE bundled with Flash autoupdate
- AIR desktop runtime, SDK and Compiler 17.0.0.172
Vulnerability Identifier
- CVE-2015-3044
- CVE-2015-3077
- CVE-2015-3078
- CVE-2015-3079
- CVE-2015-3080
- CVE-2015-3081
- CVE-2015-3082
- CVE-2015-3083
- CVE-2015-3084
- CVE-2015-3085
- CVE-2015-3086
- CVE-2015-3087
- CVE-2015-3088
- CVE-2015-3089
- CVE-2015-3090
- CVE-2015-3091
- CVE-2015-3092
- CVE-2015-3093
Source
Related Link
Share with