Adobe Flash Player post-release Reuse Vulnerability (CVE-2015-0349)
Adobe Flash Player post-release Reuse Vulnerability (CVE-2015-0349)
Release date:
Updated on:
Affected Systems:
Adobe Flash Player <17.0.0.169
Adobe Flash Player <13.0.0.281
Adobe Flash Player <11.2.202.457
Adobe Flash Player 14. x-17.x
Description:
CVE (CAN) ID: CVE-2015-0349
Adobe Flash Player is an integrated multimedia Player. Adobe Flash Player has the cross-origin Security Restriction Bypass Vulnerability. Attackers can exploit this vulnerability to bypass some same-origin policy restrictions.
Adobe Flash Player has the vulnerability of re-exploitation after release. Attackers can exploit this vulnerability to execute arbitrary code or cause DOS.
<* Source: Nicolas Joly
Link: https://helpx.adobe.com/security/products/flash-player/apsb15-06.html
*>
Suggestion:
Vendor patch:
Adobe
-----
Adobe has released a Security Bulletin (apsb15-06) and patches for this:
Apsb15-06: Security updates available for Adobe Flash Player
Link: https://helpx.adobe.com/security/products/flash-player/apsb15-06.html
This article permanently updates the link address: