{
    "id": "CVE-2014-0515",
    "published": "2014-04-29 10:37:03",
    "last_modified": "2026-06-17 00:03:11",
    "cvss_score": "10.0",
    "cvss_severity": "HIGH",
    "cvss_version": "2.0",
    "cvss_vector": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
    "cwe": "CWE-119",
    "description": "Buffer overflow in Adobe Flash Player before 11.7.700.279 and 11.8.x through 13.0.x before 13.0.0.206 on Windows and OS X, and before 11.2.202.356 on Linux, allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in April 2014.",
    "epss_score": "0.94569",
    "epss_percentile": "0.99853",
    "kev": 0,
    "kev_due": null,
    "has_exploit": 1,
    "updated_at": "2026-09-26 18:19:14",
    "priority": {
        "rank": 2,
        "label": "Patch early",
        "why": "A public exploit exists."
    },
    "products": [
        {
            "vendor": "adobe",
            "product": "flash_player"
        },
        {
            "vendor": "apple",
            "product": "mac_os_x"
        },
        {
            "vendor": "linux",
            "product": "linux_kernel"
        },
        {
            "vendor": "microsoft",
            "product": "windows"
        }
    ],
    "kev_detail": null,
    "exploits": [
        {
            "source": "exploit-db",
            "ref_id": "33333",
            "title": "Adobe Flash Player - Shader Buffer Overflow (Metasploit)",
            "date": "2014-05-12",
            "url": "https://www.exploit-db.com/exploits/33333"
        }
    ],
    "refs_list": [
        "http://helpx.adobe.com/security/products/flash-player/apsb14-13.html",
        "http://lists.opensuse.org/opensuse-security-announce/2014-04/msg00017.html",
        "http://lists.opensuse.org/opensuse-security-announce/2014-05/msg00000.html",
        "http://lists.opensuse.org/opensuse-security-announce/2014-05/msg00001.html",
        "http://rhn.redhat.com/errata/RHSA-2014-0447.html",
        "http://security.gentoo.org/glsa/glsa-201405-04.xml",
        "http://www.securityfocus.com/bid/67092",
        "http://www.securitytracker.com/id/1030155",
        "http://helpx.adobe.com/security/products/flash-player/apsb14-13.html",
        "http://lists.opensuse.org/opensuse-security-announce/2014-04/msg00017.html",
        "http://lists.opensuse.org/opensuse-security-announce/2014-05/msg00000.html",
        "http://lists.opensuse.org/opensuse-security-announce/2014-05/msg00001.html",
        "http://rhn.redhat.com/errata/RHSA-2014-0447.html",
        "http://security.gentoo.org/glsa/glsa-201405-04.xml",
        "http://www.securityfocus.com/bid/67092",
        "http://www.securitytracker.com/id/1030155"
    ]
}