PT-2015-2830 · Adobe+3 · Flash Player+4

Published

2015-12-09

·

Updated

2023-05-08

·

CVE-2015-8416

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Adobe Integrated Runtime and Flash Player (affected versions not specified)
Description The issue is caused by a buffer overflow. It may allow a remote attacker to execute arbitrary code or cause a denial of service. The vulnerability is also related to a Use-After-Free condition in the TextBlock releaseLineCreationData, which can be exploited for remote code execution.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Buffer Overflow

Weakness Enumeration

Related Identifiers

ALT-PU-2015-2079
BDU:2015-12196
CVE-2015-8416
MGASA-2015-0468
OPENSUSE-SU-2015_2239-1
RHSA-2015:2593
RHSA-2015_2593
SUSE-SU-2015:2236-1
SUSE-SU-2015:2247-1
ZDI-15-666

Affected Products

Alt Linux
Integrated Runtime
Flash Player
Red Hat
Suse