CVE-2014-0559
published 2014-09-10CVE-2014-0559: Heap-based buffer overflow in Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux…
PriorityP354critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
12.99%
95.9th percentile
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.0.249 on Windows and OS X and before 15.0.0.252 on Android, Adobe AIR SDK before 15.0.0.249, and Adobe AIR SDK & Compiler before 15.0.0.249 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-0556.
Affected
53 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | adobe_air | <= 14.0.0.178 | — |
| adobe | adobe_air | <= 14.0.0.179 | — |
| adobe | adobe_air | — | — |
| adobe | adobe_air | — | — |
| adobe | adobe_air | — | — |
| adobe | adobe_air | — | — |
| adobe | adobe_air_sdk | <= 14.0.0.178 | — |
| adobe | adobe_air_sdk | — | — |
| adobe | adobe_air_sdk | — | — |
| adobe | adobe_air_sdk | — | — |
| adobe | adobe_air_sdk | — | — |
| adobe | flash_player | <= 13.0.0.241 | — |
| adobe | flash_player | <= 11.2.202.400 | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
CVSS provenance
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
osv10.0CRITICAL
vulncheck10.0CRITICAL
vendor_redhat10.0CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-8w86-7v7g-746r: Heap-based buffer overflow in Adobe Flash Player before 13
ghsa_unreviewed·2022-05-17·CVSS 10.0
CVE-2014-0556 [CRITICAL] CWE-119 GHSA-8w86-7v7g-746r: Heap-based buffer overflow in Adobe Flash Player before 13
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.0.249 on Windows and OS X and before 15.0.0.252 on Android, Adobe AIR SDK before 15.0.0.249, and Adobe AIR SDK & Compiler before 15.0.0.249 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-0559.
GHSA
GHSA-v9v5-f3pq-3qxp: Heap-based buffer overflow in Adobe Flash Player before 13
ghsa_unreviewed·2022-05-17·CVSS 10.0
CVE-2014-0559 [CRITICAL] CWE-119 GHSA-v9v5-f3pq-3qxp: Heap-based buffer overflow in Adobe Flash Player before 13
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.0.249 on Windows and OS X and before 15.0.0.252 on Android, Adobe AIR SDK before 15.0.0.249, and Adobe AIR SDK & Compiler before 15.0.0.249 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-0556.
OSV
CVE-2014-0556: Heap-based buffer overflow in Adobe Flash Player before 13
osv·2014-09-10·CVSS 10.0
CVE-2014-0556 [CRITICAL] CVE-2014-0556: Heap-based buffer overflow in Adobe Flash Player before 13
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.0.249 on Windows and OS X and before 15.0.0.252 on Android, Adobe AIR SDK before 15.0.0.249, and Adobe AIR SDK & Compiler before 15.0.0.249 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-0559.
OSV
CVE-2014-0559: Heap-based buffer overflow in Adobe Flash Player before 13
osv·2014-09-10·CVSS 10.0
CVE-2014-0559 [CRITICAL] CVE-2014-0559: Heap-based buffer overflow in Adobe Flash Player before 13
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.0.249 on Windows and OS X and before 15.0.0.252 on Android, Adobe AIR SDK before 15.0.0.249, and Adobe AIR SDK & Compiler before 15.0.0.249 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-0556.
VulnCheck
Adobe Flash Player Improper Restriction of Operations within the Bounds of a Memory Buffer
vulncheck·2014·CVSS 10.0
CVE-2014-0556 [CRITICAL] Adobe Flash Player Improper Restriction of Operations within the Bounds of a Memory Buffer
Adobe Flash Player Improper Restriction of Operations within the Bounds of a Memory Buffer
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.0.249 on Windows and OS X and before 15.0.0.252 on Android, Adobe AIR SDK before 15.0.0.249, and Adobe AIR SDK & Compiler before 15.0.0.249 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-0559.
Affected: Adobe Flash Player
Required Action: Apply remediations or mitigations per vendor instructions or discontinue use of the product if remediation or mitigations are unavailable.
Known Ransomware Campaign Use: Known
Exploitation References: https://unit42.paloalton
Red Hat
flash-plugin: multiple code execution or security bypass flaws (APSB14-21)
vendor_redhat·2014-09-09·CVSS 10.0
CVE-2014-0556 [CRITICAL] flash-plugin: multiple code execution or security bypass flaws (APSB14-21)
flash-plugin: multiple code execution or security bypass flaws (APSB14-21)
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.0.249 on Windows and OS X and before 15.0.0.252 on Android, Adobe AIR SDK before 15.0.0.249, and Adobe AIR SDK & Compiler before 15.0.0.249 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-0559.
Red Hat
flash-plugin: multiple code execution or security bypass flaws (APSB14-21)
vendor_redhat·2014-09-09·CVSS 10.0
CVE-2014-0559 [CRITICAL] flash-plugin: multiple code execution or security bypass flaws (APSB14-21)
flash-plugin: multiple code execution or security bypass flaws (APSB14-21)
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.0.249 on Windows and OS X and before 15.0.0.252 on Android, Adobe AIR SDK before 15.0.0.249, and Adobe AIR SDK & Compiler before 15.0.0.249 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-0556.
No detection rules found.
No public exploits indexed.
HackerOne
Adobe Flash Player Out-of-Bound Access Vulnerability
hackerone·2015-03-25·CVSS 9.3
[CRITICAL] Adobe Flash Player Out-of-Bound Access Vulnerability
Adobe Flash Player Out-of-Bound Access Vulnerability
I. Summary
Adobe Flash Player is prone to a vulnerability which leads to Out-of-Bound memory access memory via carefully crafted regular expression. An attacker can exploit this issue to defeat ASLR protection or even execute arbitrary code in the context of affected application (Internet Explorer, EXCEL...).
II. Description
Adobe Flash is a multimedia and software platform used for authoring of vector graphics, animation, games and rich Internet applications (RIAs) that can be viewed, played and executed in Adobe Flash Player.
When constructing a RegExpObject, most part of memory was applied from the heap. While heap overflow may also happen as it is with CVE-2013-0634, CVE-2014-0559, the matching result is stored on the stack. A fixe
Bugzilla
CVE-2014-0547 CVE-2014-0549 CVE-2014-0550 CVE-2014-0551 CVE-2014-0552 CVE-2014-0553 CVE-2014-0554 CVE-2014-0555 CVE-2014-0556 CVE-2014-0557 CVE-2014-0559 flash-plugin: multiple code execution or secur
bugzilla·2014-09-09·CVSS 10.0
CVE-2014-0547 [CRITICAL] CVE-2014-0547 CVE-2014-0549 CVE-2014-0550 CVE-2014-0551 CVE-2014-0552 CVE-2014-0553 CVE-2014-0554 CVE-2014-0555 CVE-2014-0556 CVE-2014-0557 CVE-2014-0559 flash-plugin: multiple code execution or secur
CVE-2014-0547 CVE-2014-0549 CVE-2014-0550 CVE-2014-0551 CVE-2014-0552 CVE-2014-0553 CVE-2014-0554 CVE-2014-0555 CVE-2014-0556 CVE-2014-0557 CVE-2014-0559 flash-plugin: multiple code execution or security bypass flaws (APSB14-21)
Adobe has released Flash Player 11.2.202.406 for Linux to correct the following flaws:
* These updates resolve memory leakage vulnerabilities that could be used to bypass memory address randomization (CVE-2014-0557).
* These updates resolve a security bypass vulnerability (CVE-2014-0554).
* These updates resolve a use-after-free vulnerability that could lead to code execution (CVE-2014-0553).
* These updates resolve memory corruption vulnerabilities that could lead to code execution (CVE-2014-0547, CVE-2014-0549, CVE-2014-0550, CVE-2014-0551, CVE-2014-0552, CV
Bugzilla
CVE-2014-0202 ovirt-engine-dwh: setup script logs database password in cleartext
bugzilla·2014-05-05·CVSS 2.1
CVE-2014-0202 [LOW] CVE-2014-0202 ovirt-engine-dwh: setup script logs database password in cleartext
CVE-2014-0202 ovirt-engine-dwh: setup script logs database password in cleartext
It was found that the ovirt-engine-dwh setup script would log the history database password in plaintext to a world-readable file. An attacker with a local user account on the RHEV-M server could use this flaw to access, read and modify the reports database.
Discussion:
Acknowledgements:
This issue was discovered by Red Hat.
---
*** Bug 1086248 has been marked as a duplicate of this bug. ***
---
*** Bug 1086241 has been marked as a duplicate of this bug. ***
---
This issue has been addressed in following products:
RHEV Manager version 3.3
Via RHSA-2014:0559 https://rhn.redhat.com/errata/RHSA-2014-0559.html
http://helpx.adobe.com/security/products/flash-player/apsb14-21.htmlhttp://lists.opensuse.org/opensuse-security-announce/2014-09/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2014-09/msg00016.htmlhttp://lists.opensuse.org/opensuse-security-announce/2014-09/msg00021.htmlhttp://secunia.com/advisories/61089http://security.gentoo.org/glsa/glsa-201409-05.xmlhttp://www.securityfocus.com/bid/69704http://www.securitytracker.com/id/1030822https://exchange.xforce.ibmcloud.com/vulnerabilities/95828http://helpx.adobe.com/security/products/flash-player/apsb14-21.htmlhttp://lists.opensuse.org/opensuse-security-announce/2014-09/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2014-09/msg00016.htmlhttp://lists.opensuse.org/opensuse-security-announce/2014-09/msg00021.htmlhttp://secunia.com/advisories/61089http://security.gentoo.org/glsa/glsa-201409-05.xmlhttp://www.securityfocus.com/bid/69704http://www.securitytracker.com/id/1030822https://exchange.xforce.ibmcloud.com/vulnerabilities/95828
2014-09-10
Published