CVE-2015-3043
published 2015-04-14CVE-2015-3043: Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute…
PriorityP194critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
KEVITWEXPLOIT
CISA Known Exploited Vulnerabilitydue 2022-03-24
Exploited in the wild
EPSS
79.83%
99.6th percentile
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, as exploited in the wild in April 2015, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, and CVE-2015-3042.
Affected
45 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | flash_player | < 11.2.202.457 | 11.2.202.457 |
| adobe | flash_player | < 13.0.0.281 | 13.0.0.281 |
| adobe | flash_player | <= 11.2.202.451 | — |
| adobe | flash_player | <= 13.0.0.264 | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | >= 14.0.0.125 < 17.0.0.169 | 17.0.0.169 |
| novell | suse_linux_enterprise_desktop | — | — |
| novell | suse_linux_enterprise_desktop | — | — |
| novell | suse_linux_enterprise_workstation_extension | — | — |
| opensuse | evergreen | — | — |
| opensuse | opensuse | — | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Detect delivery of malicious FLV files containing Nellymoser-encoded audio (audio format tag byte 0x68) with oversized SoundData payloads (~0x440 bytes of 0xEE) served with Content-Type video/x-flv, which triggers the heap buffer overflow in Adobe Flash Player. ↗
- →Monitor HTTP responses serving both a .swf and a .flv file in the same session with Cache-Control: no-cache, no-store and Pragma: no-cache headers, which matches the Metasploit exploit delivery pattern for CVE-2015-3043/CVE-2015-3113. ↗
- →Flag Adobe Flash Player versions below 13.0.0.281 (Windows/OS X) or below 11.2.202.457 (Linux) as vulnerable to CVE-2015-3043; also flag 14.x through 17.x before 17.0.0.169. ↗
- →CVE-2015-3113 is a regression to the same root cause as CVE-2015-3043; detections and signatures for one are effective against the other. Treat both CVEs as the same exploit family targeting Nellymoser audio decoding in Flash. ↗
- →The exploit crash manifests as a heap-based buffer overflow at a movaps instruction writing to an unmapped region just past the committed heap; look for Flash Player crash dumps with this instruction pattern. ↗
- →The exploit HTML template embeds a SWF via an object/embed tag passing FlashVars parameters 'sh', 'pl', and 'os'; inspect page source for these specific FlashVar names as an indicator of exploit kit delivery. ↗
- ·The exploit targets only 32-bit (ARCH_X86) Flash Player processes; 64-bit Flash in Chrome on Linux may crash differently (movaps fault) rather than achieving code execution. ↗
- ·The Metasploit module targets Windows 7 SP1, Windows 8.1, Linux Mint 'Rebecca', and Ubuntu 14.04.2 LTS with specific Flash versions (18.0.0.160 on Windows, 11.2.202.466 on Linux); exploitation success varies outside these tested configurations. ↗
- ·Google Chrome and Internet Explorer on Windows 8.x auto-update Flash to the patched version 17.0.0.169; these browser/OS combinations may not be exploitable if auto-update is functioning. ↗
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
osv10.0CRITICAL
vulncheck9.8CRITICAL
cisa9.8CRITICAL
vendor_redhat10.0CRITICAL
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA
Adobe Flash Player Memory Corruption Vulnerability
cisa·2022-03-03·CVSS 9.8
CVE-2015-3043 [CRITICAL] CWE-787 Adobe Flash Player Memory Corruption Vulnerability
Vulnerability: Adobe Flash Player Memory Corruption Vulnerability
Affected: Adobe Flash Player
A memory corruption vulnerability exists in Adobe Flash Player that allows an attacker to perform remote code execution.
Required Action: The impacted product is end-of-life and should be disconnected if still in use.
Notes: https://nvd.nist.gov/vuln/detail/CVE-2015-3043
Remediation Due Date: 2022-03-24
Red Hat
flash-plugin: multiple code execution issues fixed in APSB15-06
vendor_redhat·2015-04-14·CVSS 10.0
CVE-2015-0354 [CRITICAL] flash-plugin: multiple code execution issues fixed in APSB15-06
flash-plugin: multiple code execution issues fixed in APSB15-06
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
Red Hat
flash-plugin: multiple code execution issues fixed in APSB15-06
vendor_redhat·2015-04-14·CVSS 10.0
CVE-2015-0352 [CRITICAL] flash-plugin: multiple code execution issues fixed in APSB15-06
flash-plugin: multiple code execution issues fixed in APSB15-06
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
Red Hat
flash-plugin: multiple code execution issues fixed in APSB15-06
vendor_redhat·2015-04-14·CVSS 10.0
CVE-2015-0360 [CRITICAL] flash-plugin: multiple code execution issues fixed in APSB15-06
flash-plugin: multiple code execution issues fixed in APSB15-06
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
Red Hat
flash-plugin: multiple code execution issues fixed in APSB15-06
vendor_redhat·2015-04-14·CVSS 10.0
CVE-2015-0353 [CRITICAL] flash-plugin: multiple code execution issues fixed in APSB15-06
flash-plugin: multiple code execution issues fixed in APSB15-06
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
Red Hat
flash-plugin: multiple code execution issues fixed in APSB15-06
vendor_redhat·2015-04-14·CVSS 10.0
CVE-2015-3043 [CRITICAL] flash-plugin: multiple code execution issues fixed in APSB15-06
flash-plugin: multiple code execution issues fixed in APSB15-06
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, as exploited in the wild in April 2015, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, and CVE-2015-3042.
Red Hat
flash-plugin: multiple code execution issues fixed in APSB15-06
vendor_redhat·2015-04-14·CVSS 10.0
CVE-2015-0350 [CRITICAL] flash-plugin: multiple code execution issues fixed in APSB15-06
flash-plugin: multiple code execution issues fixed in APSB15-06
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
Red Hat
flash-plugin: multiple code execution issues fixed in APSB15-06
vendor_redhat·2015-04-14·CVSS 10.0
CVE-2015-3038 [CRITICAL] flash-plugin: multiple code execution issues fixed in APSB15-06
flash-plugin: multiple code execution issues fixed in APSB15-06
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
Red Hat
flash-plugin: multiple code execution issues fixed in APSB15-06
vendor_redhat·2015-04-14·CVSS 10.0
CVE-2015-3042 [CRITICAL] flash-plugin: multiple code execution issues fixed in APSB15-06
flash-plugin: multiple code execution issues fixed in APSB15-06
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, and CVE-2015-3043.
Red Hat
flash-plugin: multiple code execution issues fixed in APSB15-06
vendor_redhat·2015-04-14·CVSS 10.0
CVE-2015-0347 [CRITICAL] flash-plugin: multiple code execution issues fixed in APSB15-06
flash-plugin: multiple code execution issues fixed in APSB15-06
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
Red Hat
flash-plugin: multiple code execution issues fixed in APSB15-06
vendor_redhat·2015-04-14·CVSS 10.0
CVE-2015-3041 [CRITICAL] flash-plugin: multiple code execution issues fixed in APSB15-06
flash-plugin: multiple code execution issues fixed in APSB15-06
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3042, and CVE-2015-3043.
Red Hat
flash-plugin: multiple code execution issues fixed in APSB15-06
vendor_redhat·2015-04-14·CVSS 10.0
CVE-2015-0355 [CRITICAL] flash-plugin: multiple code execution issues fixed in APSB15-06
flash-plugin: multiple code execution issues fixed in APSB15-06
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
GHSA
GHSA-87rq-wh94-4x2j: Adobe Flash Player before 13
ghsa_unreviewed·2022-05-14·CVSS 10.0
CVE-2015-0354 [CRITICAL] GHSA-87rq-wh94-4x2j: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
GHSA
GHSA-gc3w-hppp-5vh9: Adobe Flash Player before 13
ghsa_unreviewed·2022-05-14·CVSS 10.0
CVE-2015-0360 [CRITICAL] GHSA-gc3w-hppp-5vh9: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
GHSA
GHSA-99jp-389h-929q: Adobe Flash Player before 13
ghsa_unreviewed·2022-05-14·CVSS 10.0
CVE-2015-0350 [CRITICAL] GHSA-99jp-389h-929q: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
GHSA
GHSA-r8v5-rf6g-q3m8: Adobe Flash Player before 13
ghsa_unreviewed·2022-05-14·CVSS 10.0
CVE-2015-3038 [CRITICAL] GHSA-r8v5-rf6g-q3m8: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
GHSA
GHSA-r494-qvxr-557h: Adobe Flash Player before 13
ghsa_unreviewed·2022-05-14·CVSS 10.0
CVE-2015-0353 [CRITICAL] GHSA-r494-qvxr-557h: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
GHSA
GHSA-584x-j6hp-wjf7: Adobe Flash Player before 13
ghsa_unreviewed·2022-05-14·CVSS 10.0
CVE-2015-0355 [CRITICAL] GHSA-584x-j6hp-wjf7: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
GHSA
GHSA-68qr-58pp-42rr: Adobe Flash Player before 13
ghsa_unreviewed·2022-05-14·CVSS 10.0
CVE-2015-3043 [CRITICAL] CWE-787 GHSA-68qr-58pp-42rr: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, as exploited in the wild in April 2015, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, and CVE-2015-3042.
GHSA
GHSA-989f-94hv-pcxc: Adobe Flash Player before 13
ghsa_unreviewed·2022-05-14·CVSS 10.0
CVE-2015-0347 [CRITICAL] GHSA-989f-94hv-pcxc: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
GHSA
GHSA-xj5f-4p5c-vxq5: Adobe Flash Player before 13
ghsa_unreviewed·2022-05-14·CVSS 10.0
CVE-2015-3042 [CRITICAL] GHSA-xj5f-4p5c-vxq5: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, and CVE-2015-3043.
GHSA
GHSA-7647-7jjc-5jw8: Adobe Flash Player before 13
ghsa_unreviewed·2022-05-14·CVSS 10.0
CVE-2015-0352 [CRITICAL] GHSA-7647-7jjc-5jw8: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
GHSA
GHSA-hcpq-w7rj-wqc8: Adobe Flash Player before 13
ghsa_unreviewed·2022-05-14·CVSS 10.0
CVE-2015-3041 [CRITICAL] GHSA-hcpq-w7rj-wqc8: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3042, and CVE-2015-3043.
OSV
CVE-2015-0347: Adobe Flash Player before 13
osv·2015-04-14·CVSS 10.0
CVE-2015-0347 [CRITICAL] CVE-2015-0347: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
OSV
CVE-2015-3042: Adobe Flash Player before 13
osv·2015-04-14·CVSS 10.0
CVE-2015-3042 [CRITICAL] CVE-2015-3042: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, and CVE-2015-3043.
OSV
CVE-2015-3041: Adobe Flash Player before 13
osv·2015-04-14·CVSS 10.0
CVE-2015-3041 [CRITICAL] CVE-2015-3041: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3042, and CVE-2015-3043.
OSV
CVE-2015-0354: Adobe Flash Player before 13
osv·2015-04-14·CVSS 10.0
CVE-2015-0354 [CRITICAL] CVE-2015-0354: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
OSV
CVE-2015-3038: Adobe Flash Player before 13
osv·2015-04-14·CVSS 10.0
CVE-2015-3038 [CRITICAL] CVE-2015-3038: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
OSV
CVE-2015-0360: Adobe Flash Player before 13
osv·2015-04-14·CVSS 10.0
CVE-2015-0360 [CRITICAL] CVE-2015-0360: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
OSV
CVE-2015-0353: Adobe Flash Player before 13
osv·2015-04-14·CVSS 10.0
CVE-2015-0353 [CRITICAL] CVE-2015-0353: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
OSV
CVE-2015-0352: Adobe Flash Player before 13
osv·2015-04-14·CVSS 10.0
CVE-2015-0352 [CRITICAL] CVE-2015-0352: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
OSV
CVE-2015-0350: Adobe Flash Player before 13
osv·2015-04-14·CVSS 10.0
CVE-2015-0350 [CRITICAL] CVE-2015-0350: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
OSV
CVE-2015-0355: Adobe Flash Player before 13
osv·2015-04-14·CVSS 10.0
CVE-2015-0355 [CRITICAL] CVE-2015-0355: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
OSV
CVE-2015-3043: Adobe Flash Player before 13
osv·2015-04-14·CVSS 10.0
CVE-2015-3043 [CRITICAL] CVE-2015-3043: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, as exploited in the wild in April 2015, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, and CVE-2015-3042.
VulnCheck
Adobe Flash Player Memory Corruption Vulnerability
vulncheck·2015·CVSS 9.8
CVE-2015-3043 [CRITICAL] CWE-787 Adobe Flash Player Memory Corruption Vulnerability
Adobe Flash Player Memory Corruption Vulnerability
A memory corruption vulnerability exists in Adobe Flash Player that allows an attacker to perform remote code execution.
Affected: Adobe Flash Player
Required Action: The impacted product is end-of-life and should be disconnected if still in use.
Exploitation References: https://docs.google.com/spreadsheets/d/1lkNJ0uQwbeC1ZTRrxdtuPLCIl7mlUreoKfSIgajnSyY/edit; https://www.cve.org/CVERecord?id=CVE-2015-3043; https://www.fireeye.com/blog/threat-research/2015/04/probable_apt28_useo.html; https://www.recordedfuture.com/russian-apt-toolkits; https://www2.fireeye.com/rs/848-DID-242/images/rpt_APT37.pdf; https://marcoramilli.com/2019/12/05/apt28-attacks-evolution/; https://dl.acm.org/doi/pdf/10.1145/3465481.3465758; https://www.cisa.gov/sites/
No detection rules found.
Exploit-DB
Adobe Flash - Heap Buffer Overflow Loading '.FLV' File with Nellymoser Audio Codec
exploitdb·2015-08-19·CVSS 9.8
CVE-2015-4432 [CRITICAL] Adobe Flash - Heap Buffer Overflow Loading '.FLV' File with Nellymoser Audio Codec
Adobe Flash - Heap Buffer Overflow Loading '.FLV' File with Nellymoser Audio Codec
---
Source: https://code.google.com/p/google-security-research/issues/detail?id=425&can=1&q=label%3AProduct-Flash%20modified-after%3A2015%2F8%2F17&sort=id
To reproduce, host the attached files appropriately and:
http://localhost/LoadMP4.swf?file=crash4000368.flv
If there is no crash at first, refresh the page a few times.
With a debugger attached to 64-bit Flash in Chrome Linux, the crash manifests like this:
=> 0x00007f7789d081bb : movaps %xmm1,-0x10(%rdi)
rdi 0x7f7778d69200
7f777894b000-7f7778d69000 rw-p 00000000 00:00 0
7f7778d69000-7f7778d88000 ---p 00000000 00:00 0
This looks very like a heap-based buffer overflow that just happens to have walked off the end of the committed heap.
Also, this
Exploit-DB
Adobe Flash Player - Nellymoser Audio Decoding Buffer Overflow (Metasploit)
exploitdb·2015-07-08·CVSS 9.8
CVE-2015-3113 [CRITICAL] Adobe Flash Player - Nellymoser Audio Decoding Buffer Overflow (Metasploit)
Adobe Flash Player - Nellymoser Audio Decoding Buffer Overflow (Metasploit)
---
##
# This module requires Metasploit: http://metasploit.com/download
# Current source: https://github.com/rapid7/metasploit-framework
##
require 'msf/core'
class MetasploitModule 'Adobe Flash Player Nellymoser Audio Decoding Buffer Overflow',
'Description' => %q{
This module exploits a buffer overflow on Adobe Flash Player when handling nellymoser
encoded audio inside a FLV video, as exploited in the wild on June 2015. This module
has been tested successfully on:
Windows 7 SP1 (32-bit), IE11 and Adobe Flash 18.0.0.160,
Windows 7 SP1 (32-bit), Firefox 38.0.5 and Adobe Flash 18.0.0.160,
Windows 8.1, Firefox 38.0.5 and Adobe Flash 18.0.0.160,
Linux Mint "Rebecca" (32 bits), Firefox 33.0 and Adobe Flash 11.2.20
Metasploit
Adobe Flash Player Nellymoser Audio Decoding Buffer Overflow
metasploit·CVSS 9.8
[CRITICAL] Adobe Flash Player Nellymoser Audio Decoding Buffer Overflow
Adobe Flash Player Nellymoser Audio Decoding Buffer Overflow
This module exploits a buffer overflow on Adobe Flash Player when handling nellymoser encoded audio inside a FLV video, as exploited in the wild on June 2015. This module has been tested successfully on: Windows 7 SP1 (32-bit), IE11 and Adobe Flash 18.0.0.160, Windows 7 SP1 (32-bit), Firefox 38.0.5 and Adobe Flash 18.0.0.160, Windows 8.1, Firefox 38.0.5 and Adobe Flash 18.0.0.160, Linux Mint "Rebecca" (32 bits), Firefox 33.0 and Adobe Flash 11.2.202.466, and Ubuntu 14.04.2 LTS, Firefox 35.01, and Adobe Flash 11.2.202.466. Note that this exploit is effective against both CVE-2015-3113 and the earlier CVE-2015-3043, since CVE-2015-3113 is effectively a regression to the same root cause as CVE-2015-3043.
arXiv
Investigation of Advanced Persistent Threats Network-based Tactics, Techniques and Procedures
arxiv_fulltext·2025-02-12
Investigation of Advanced Persistent Threats Network-based Tactics, Techniques and Procedures
Investigation of Advanced Persistent Threats Network-based Tactics, Techniques and Procedures
Almuthanna Alageel
and
Sergio Maffeis
Department of Computing
Imperial College London
London, United Kingdom
plain
plain
## Abstract
The scarcity of data and the high complexity of Advanced Persistent Threats (APTs) attacks have created challenges in comprehending their behavior and hindered the exploration of effective detection techniques.
To create an effective APT detection strategy, it is important to examine the Tactics, Techniques, and Procedures (TTPs) that have been reported by the industry. These TTPs can be difficult to classify as either malicious or legitimate. When developing an approach for the next generation of network intrusion detection systems (NIDS), it is necessary to
Krebs
Critical Updates for Windows, Flash, Java
blogs_krebs·2015-04-14·CVSS 9.8
[CRITICAL] Critical Updates for Windows, Flash, Java
Get your patch chops on people, because chances are you’re running software from Microsoft, Adobe or Oracle that received critical security updates today. Adobe released a Flash Player update to fix at least 22 flaws, including one flaw that is being actively exploited. Microsoft pushed out 11 update bundles to fix more than two dozen bugs in Windows and associated software, including one that was publicly disclosed this month. And Oracle has an update for its Java software that addresses at least 15 flaws, all of which are exploitable remotely without any authentication.
Adobe’s patch includes a fix for a zero-day bug (CVE-2015-3043) that the company warns is already being exploited. Users of the Adobe Flash Player for Windows and Macintosh should update to Adobe Flash Player 17.0.0.169
Qualys
Patch Tuesday April 2015 | Qualys
blogs_qualys·2015-04-14·CVSS 7.8
[HIGH] Patch Tuesday April 2015 | Qualys
April’s Patch Tuesday continues the 2015 trend of high volume patches. This month we have a full set of 11 patches from Microsoft addressing 26 vulnerabilities.The vulnerabilities affect Windows and Office on both servers and workstations. In addition, Oracle is publishing their quarterly Critical Patch Update fixing 98 vulnerabilities in over 25 software categories, including Java, Oracle RDBMS and MySQL.
Add to that the fixes in Adobe, Mozilla and Google Chrome software that were initiated by the results of the PWN2OWN competition in Vancouver, and every defensive IT security professional will have their work doubled this month.
Let’s start with Microsoft: 11 bulletins from MS15-032 to MS15-042 with four of them critical. But priorities are clear this month:
Number one is MS15-033, th
Qualys
Patch Tuesday April 2015 | Qualys
blogs_qualys·2015-04-14·CVSS 7.8
[HIGH] Patch Tuesday April 2015 | Qualys
April’s Patch Tuesday continues the 2015 trend of high volume patches. This month we have a full set of 11 patches from Microsoft addressing 26 vulnerabilities.The vulnerabilities affect Windows and Office on both servers and workstations. In addition, Oracle is publishing their quarterly Critical Patch Update fixing 98 vulnerabilities in over 25 software categories, including Java, Oracle RDBMS and MySQL.
Add to that the fixes in Adobe, Mozilla and Google Chrome software that were initiated by the results of the PWN2OWN competition in Vancouver, and every defensive IT security professional will have their work doubled this month.
Let’s start with Microsoft: 11 bulletins from MS15-032 to MS15-042 with four of them critical. But priorities are clear this month:
Number one is MS15-033, th
Krebs
Critical Updates for Windows, Flash, Java – Krebs on Security
blogs_krebs·2015-04-01·CVSS 9.8
[CRITICAL] Critical Updates for Windows, Flash, Java – Krebs on Security
Get your patch chops on people, because chances are you’re running software from Microsoft , Adobe or Oracle that received critical security updates today. Adobe released a Flash Player update to fix at least 22 flaws, including one flaw that is being actively exploited. Microsoft pushed out 11 update bundles to fix more than two dozen bugs in Windows and associated software, including one that was publicly disclosed this month. And Oracle has an update for its Java software that addresses at least 15 flaws, all of which are exploitable remotely without any authentication.
Adobe’s patch includes a fix for a zero-day bug (CVE-2015-3043) that the company warns is already being exploited. Users of the Adobe Flash Player for Windows and Macintosh should update to Adobe Flash Player 17.0.0.169
Bugzilla
flash-plugin: multiple code execution issues fixed in APSB15-06
bugzilla·2015-04-15·CVSS 10.0
CVE-2015-0347 [CRITICAL] flash-plugin: multiple code execution issues fixed in APSB15-06
flash-plugin: multiple code execution issues fixed in APSB15-06
Adobe Security Bulletin APSB15-06 for Adobe Flash Player describes multiple flaws that can possibly lead to code execution when Flash Player is used to play a specially crafted SWF file.
Quoting from the APSB15-06:
These updates resolve memory corruption vulnerabilities that could lead to code execution (CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3038, CVE-2015-3041, CVE-2015-3042, CVE-2015-3043).
These updates resolve a type confusion vulnerability that could lead to code execution (CVE-2015-0356).
These updates resolve a buffer overflow vulnerability that could lead to code execution (CVE-2015-0348).
These updates resolve use-after-free vulnerabilit
http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00010.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-04/msg00011.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-04/msg00012.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-04/msg00013.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0813.htmlhttp://www.securityfocus.com/bid/74062http://www.securitytracker.com/id/1032105https://helpx.adobe.com/security/products/flash-player/apsb15-06.htmlhttps://security.gentoo.org/glsa/201504-07https://www.exploit-db.com/exploits/37536/http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00010.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-04/msg00011.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-04/msg00012.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-04/msg00013.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0813.htmlhttp://www.securityfocus.com/bid/74062http://www.securitytracker.com/id/1032105https://helpx.adobe.com/security/products/flash-player/apsb15-06.htmlhttps://security.gentoo.org/glsa/201504-07https://www.exploit-db.com/exploits/37536/https://github.com/cisagov/vulnrichment/issues/196https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2015-3043
2015-04-14
Published
2022-03-03
Added to CISA KEV
Exploited in the wild