CRITICAL · 9.8

CVE-2015-0311

Unspecified vulnerability in Adobe Flash Player through 13.0.0.262 and 14.x, 15.x, and 16.x through 16.0.0.287 on Windows and OS X and through 11.2.202.438 on Linux allows remote attackers to execute ...

Vulnerability Description

Unspecified vulnerability in Adobe Flash Player through 13.0.0.262 and 14.x, 15.x, and 16.x through 16.0.0.287 on Windows and OS X and through 11.2.202.438 on Linux allows remote attackers to execute arbitrary code via unknown vectors, as exploited in the wild in January 2015.

CVSS Score

9.8

CRITICAL

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
AdobeFlash Player<= 11.2.202.438
LinuxLinux Kernel-
AppleMac Os X-
MicrosoftWindows-
SuseLinux Enterprise Desktop11
SuseLinux Enterprise Workstation Extension12
MicrosoftInternet Explorer10
MicrosoftWindows 8-
MicrosoftWindows Rt-
MicrosoftWindows Server 2012-
MicrosoftWindows 10 1507-
MicrosoftWindows 8.1-
MicrosoftWindows Rt 8.1-
MicrosoftEdge-

References

FAQ

What is CVE-2015-0311?

CVE-2015-0311 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Unspecified vulnerability in Adobe Flash Player through 13.0.0.262 and 14.x, 15.x, and 16.x through 16.0.0.287 on Windows and OS X and through 11.2.202.438 on Linux allows remote attackers to execute ...

How severe is CVE-2015-0311?

CVE-2015-0311 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.

Is there a patch for CVE-2015-0311?

Check the references section above for vendor advisories and patch information. Affected products include: Adobe Flash Player, Linux Linux Kernel, Apple Mac Os X, Microsoft Windows, Suse Linux Enterprise Desktop.