Use-after-free vulnerability in Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in February 2015, a different vulnerability than CVE-2015-0315, CVE-2015-0320, and CVE-2015-0322.
2015-02-02T19:59:00.053
2025-04-12T10:46:40.837
Deferred
CVSSv3.1: 9.8 (CRITICAL)
AV:N/AC:L/Au:N/C:C/I:C/A:C
10.0
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | adobe | flash_player | < 11.2.202.442 | Yes |
Operating System | linux | linux_kernel | - | No |
Application | adobe | flash_player | < 13.0.0.269 | Yes |
Application | adobe | flash_player | < 16.0.0.305 | Yes |
Operating System | apple | mac_os_x | - | No |
Operating System | microsoft | windows | - | No |
Operating System | opensuse | evergreen | 11.4 | Yes |
Operating System | opensuse | opensuse | 13.1 | Yes |
Operating System | opensuse | opensuse | 13.2 | Yes |
Operating System | suse | linux_enterprise_desktop | 11 | Yes |
Operating System | suse | linux_enterprise_desktop | 12 | Yes |
Operating System | suse | linux_enterprise_workstation_extension | 12 | Yes |
Application | microsoft | internet_explorer | 10 | Yes |
Operating System | microsoft | windows_8 | - | No |
Operating System | microsoft | windows_rt | - | No |
Operating System | microsoft | windows_server_2012 | - | No |
Application | microsoft | internet_explorer | 11 | Yes |
Operating System | microsoft | windows_10_1507 | - | No |
Operating System | microsoft | windows_8.1 | - | No |
Operating System | microsoft | windows_rt_8.1 | - | No |
Operating System | microsoft | windows_server_2012 | r2 | No |
Application | microsoft | edge | - | Yes |
Operating System | microsoft | windows_10_1507 | - | No |