CVE-2015-0334
published 2015-03-13CVE-2015-0334: Adobe Flash Player before 13.0.0.277 and 14.x through 17.x before 17.0.0.134 on Windows and OS X and before 11.2.202.451 on Linux allows attackers to execute…
PriorityP346critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
5.69%
92.1th percentile
Adobe Flash Player before 13.0.0.277 and 14.x through 17.x before 17.0.0.134 on Windows and OS X and before 11.2.202.451 on Linux allows attackers to execute arbitrary code by leveraging an unspecified "type confusion," a different vulnerability than CVE-2015-0336.
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | flash_player | <= 13.0.0.264 | — |
| adobe | flash_player | <= 11.2.202.442 | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
osv9.3CRITICAL
vulncheck9.3CRITICAL
vendor_redhat9.3CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-vf82-rw34-q9xr: Adobe Flash Player before 13
ghsa_unreviewed·2022-05-17·CVSS 9.3
CVE-2015-0334 [CRITICAL] GHSA-vf82-rw34-q9xr: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.277 and 14.x through 17.x before 17.0.0.134 on Windows and OS X and before 11.2.202.451 on Linux allows attackers to execute arbitrary code by leveraging an unspecified "type confusion," a different vulnerability than CVE-2015-0336.
GHSA
GHSA-x9gp-g79c-8994: Adobe Flash Player before 13
ghsa_unreviewed·2022-05-17·CVSS 9.3
CVE-2015-0336 [CRITICAL] GHSA-x9gp-g79c-8994: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.277 and 14.x through 17.x before 17.0.0.134 on Windows and OS X and before 11.2.202.451 on Linux allows attackers to execute arbitrary code by leveraging an unspecified "type confusion," a different vulnerability than CVE-2015-0334.
Project0
A Tale of Two Exploits - Project Zero
project_zero·2015-04-01·CVSS 9.3
CVE-2015-0334 [CRITICAL] A Tale of Two Exploits - Project Zero
Posted by Natalie Silvanovich, Collision Investigator and (Object) Field Examiner
CVE-2015-0336 is a type confusion vulnerability in the AS2 NetConnection class. I reported this issue in January and soon wrote a proof-of-concept exploit for the bug. The issue was patched by Adobe in March and less than a week later, in what was likely a case of bug collision, it was found in two exploit kits in the wild. This created an interesting opportunity to compare a real exploit to a theoretical one and better understand how attackers exploit Flash vulnerabilities.
##
##
The Bug
CVE-2105-0336 is caused by a faulty check in the ActionScript 2 NetConnection class. To understand the bug, it is important to understand the structure of AS2 objects.
ActionScript 2 is a legacy scripting language supp
OSV
CVE-2015-0336: Adobe Flash Player before 13
osv·2015-03-13·CVSS 9.3
CVE-2015-0336 [CRITICAL] CVE-2015-0336: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.277 and 14.x through 17.x before 17.0.0.134 on Windows and OS X and before 11.2.202.451 on Linux allows attackers to execute arbitrary code by leveraging an unspecified "type confusion," a different vulnerability than CVE-2015-0334.
OSV
CVE-2015-0334: Adobe Flash Player before 13
osv·2015-03-13·CVSS 9.3
CVE-2015-0334 [CRITICAL] CVE-2015-0334: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.277 and 14.x through 17.x before 17.0.0.134 on Windows and OS X and before 11.2.202.451 on Linux allows attackers to execute arbitrary code by leveraging an unspecified "type confusion," a different vulnerability than CVE-2015-0336.
VulnCheck
Adobe Flash Player Access of Resource Using Incompatible Type ('Type Confusion')
vulncheck·2015·CVSS 9.3
CVE-2015-0336 [CRITICAL] Adobe Flash Player Access of Resource Using Incompatible Type ('Type Confusion')
Adobe Flash Player Access of Resource Using Incompatible Type ('Type Confusion')
Adobe Flash Player before 13.0.0.277 and 14.x through 17.x before 17.0.0.134 on Windows and OS X and before 11.2.202.451 on Linux allows attackers to execute arbitrary code by leveraging an unspecified "type confusion," a different vulnerability than CVE-2015-0334.
Affected: Adobe Flash Player
Required Action: Apply remediations or mitigations per vendor instructions or discontinue use of the product if remediation or mitigations are unavailable.
Exploitation References: https://www.microsoft.com/en-us/security/blog/2015/06/17/understanding-type-confusion-vulnerabilities-cve-2015-0336/
Red Hat
flash-plugin: multiple code execution issues fixed in APSB15-05
vendor_redhat·2015-03-12·CVSS 9.3
CVE-2015-0334 [CRITICAL] flash-plugin: multiple code execution issues fixed in APSB15-05
flash-plugin: multiple code execution issues fixed in APSB15-05
Adobe Flash Player before 13.0.0.277 and 14.x through 17.x before 17.0.0.134 on Windows and OS X and before 11.2.202.451 on Linux allows attackers to execute arbitrary code by leveraging an unspecified "type confusion," a different vulnerability than CVE-2015-0336.
Red Hat
flash-plugin: multiple code execution issues fixed in APSB15-05
vendor_redhat·2015-03-12·CVSS 9.3
CVE-2015-0336 [CRITICAL] flash-plugin: multiple code execution issues fixed in APSB15-05
flash-plugin: multiple code execution issues fixed in APSB15-05
Adobe Flash Player before 13.0.0.277 and 14.x through 17.x before 17.0.0.134 on Windows and OS X and before 11.2.202.451 on Linux allows attackers to execute arbitrary code by leveraging an unspecified "type confusion," a different vulnerability than CVE-2015-0334.
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00014.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-03/msg00015.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-03/msg00016.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-03/msg00017.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0697.htmlhttp://www.securitytracker.com/id/1031922https://helpx.adobe.com/security/products/flash-player/apsb15-05.htmlhttps://security.gentoo.org/glsa/201503-09http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00014.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-03/msg00015.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-03/msg00016.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-03/msg00017.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0697.htmlhttp://www.securitytracker.com/id/1031922https://helpx.adobe.com/security/products/flash-player/apsb15-05.htmlhttps://security.gentoo.org/glsa/201503-09
2015-03-13
Published