Arbitrary Code Execution Vulnerability in Adobe Flash Player and Adobe AIR

Arbitrary Code Execution Vulnerability in Adobe Flash Player and Adobe AIR

CVE-2015-3077 · HIGH Severity

AV:N/AC:L/AU:N/C:C/I:C/A:C

Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK & Compiler before 17.0.0.172 allow attackers to execute arbitrary code by leveraging an unspecified "type confusion," a different vulnerability than CVE-2015-3084 and CVE-2015-3086.

Learn more about our Cis Benchmark Audit For Distribution Independent Linux.