imPC@ndo IT

Tracker / CVE-2015-4432

CVE-2015-4432

High 10.0

Heap-based buffer overflow in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3135 and CVE-2015-5118.

Affected products and versions

adobe air · … → 18.0.0.144
adobe air_sdk · … → 18.0.0.144
adobe air_sdk_\&_compiler · … → 18.0.0.144
adobe flash_player
adobe flash_player · … → 11.2.202.468
adobe flash_player · … → 13.0.0.289

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References