peter bassill · operator
$ cve CVE-2015-3042 JSON

CVE-2015-3042 EXPLOIT

10.0
HIGH · CVSS 2.0 · EPSS 36.8% (pctl 98)

Patch early

A public exploit exists.

Description

Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, and CVE-2015-3043.

Scoring

CVSS10.0 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS36.81% — more likely to be exploited than 98% of all CVEs
On CISA KEVno
Public exploityes
Published2015-04-14
Last modified2026-06-17

Affected (11)

VendorProduct
adobeflash player
applemac os x
linuxlinux kernel
microsoftwindows
opensuseopensuse
redhatenterprise linux desktop supplementary
redhatenterprise linux server supplementary
redhatenterprise linux server supplementary eus
redhatenterprise linux workstation supplementary
susesuse linux enterprise desktop
susesuse linux workstation extension

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD