CVE-2015-3115
published 2015-07-09CVE-2015-3115: Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180…
PriorityP429medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
4.38%
90.2th percentile
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3116, CVE-2015-3125, and CVE-2015-5116.
Affected
25 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | air | <= 18.0.0.144 | — |
| adobe | air_sdk | <= 18.0.0.144 | — |
| adobe | air_sdk_compiler | <= 18.0.0.144 | — |
| adobe | flash_player | <= 11.2.202.468 | — |
| adobe | flash_player | <= 13.0.0.289 | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
| adobe | flash_player | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
osv5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
flash-plugin: information disclosure issues fixed in APSB15-16
vendor_redhat·2015-07-08·CVSS 5.0
CVE-2014-0578 [MEDIUM] flash-plugin: information disclosure issues fixed in APSB15-16
flash-plugin: information disclosure issues fixed in APSB15-16
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2015-3115, CVE-2015-3116, CVE-2015-3125, and CVE-2015-5116.
Red Hat
flash-plugin: information disclosure issues fixed in APSB15-16
vendor_redhat·2015-07-08·CVSS 5.0
CVE-2015-5116 [MEDIUM] flash-plugin: information disclosure issues fixed in APSB15-16
flash-plugin: information disclosure issues fixed in APSB15-16
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3115, CVE-2015-3116, and CVE-2015-3125.
Red Hat
flash-plugin: information disclosure issues fixed in APSB15-16
vendor_redhat·2015-07-08·CVSS 5.0
CVE-2015-3115 [MEDIUM] flash-plugin: information disclosure issues fixed in APSB15-16
flash-plugin: information disclosure issues fixed in APSB15-16
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3116, CVE-2015-3125, and CVE-2015-5116.
Red Hat
flash-plugin: information disclosure issues fixed in APSB15-16
vendor_redhat·2015-07-08·CVSS 5.0
CVE-2015-3116 [MEDIUM] flash-plugin: information disclosure issues fixed in APSB15-16
flash-plugin: information disclosure issues fixed in APSB15-16
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3115, CVE-2015-3125, and CVE-2015-5116.
Red Hat
flash-plugin: information disclosure issues fixed in APSB15-16
vendor_redhat·2015-07-08·CVSS 5.0
CVE-2015-3125 [MEDIUM] flash-plugin: information disclosure issues fixed in APSB15-16
flash-plugin: information disclosure issues fixed in APSB15-16
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3115, CVE-2015-3116, and CVE-2015-5116.
GHSA
GHSA-3q32-rq9p-vq3r: Adobe Flash Player before 13
ghsa_unreviewed·2022-05-17·CVSS 5.0
CVE-2015-3125 [MEDIUM] CWE-284 GHSA-3q32-rq9p-vq3r: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3115, CVE-2015-3116, and CVE-2015-5116.
GHSA
GHSA-vx86-wppg-8gxr: Adobe Flash Player before 13
ghsa_unreviewed·2022-05-17·CVSS 5.0
CVE-2014-0578 [MEDIUM] CWE-284 GHSA-vx86-wppg-8gxr: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2015-3115, CVE-2015-3116, CVE-2015-3125, and CVE-2015-5116.
GHSA
GHSA-5533-3642-whwv: Adobe Flash Player before 13
ghsa_unreviewed·2022-05-17·CVSS 5.0
CVE-2015-3116 [MEDIUM] CWE-284 GHSA-5533-3642-whwv: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3115, CVE-2015-3125, and CVE-2015-5116.
GHSA
GHSA-rq2x-82hg-g56c: Adobe Flash Player before 13
ghsa_unreviewed·2022-05-17·CVSS 5.0
CVE-2015-5116 [MEDIUM] CWE-284 GHSA-rq2x-82hg-g56c: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3115, CVE-2015-3116, and CVE-2015-3125.
GHSA
GHSA-8xf2-22vf-75pf: Adobe Flash Player before 13
ghsa_unreviewed·2022-05-17·CVSS 5.0
CVE-2015-3115 [MEDIUM] CWE-284 GHSA-8xf2-22vf-75pf: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3116, CVE-2015-3125, and CVE-2015-5116.
OSV
CVE-2015-3116: Adobe Flash Player before 13
osv·2015-07-09·CVSS 5.0
CVE-2015-3116 [MEDIUM] CVE-2015-3116: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3115, CVE-2015-3125, and CVE-2015-5116.
OSV
CVE-2015-3115: Adobe Flash Player before 13
osv·2015-07-09·CVSS 5.0
CVE-2015-3115 [MEDIUM] CVE-2015-3115: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3116, CVE-2015-3125, and CVE-2015-5116.
OSV
CVE-2015-3125: Adobe Flash Player before 13
osv·2015-07-09·CVSS 5.0
CVE-2015-3125 [MEDIUM] CVE-2015-3125: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3115, CVE-2015-3116, and CVE-2015-5116.
OSV
CVE-2014-0578: Adobe Flash Player before 13
osv·2015-07-09·CVSS 5.0
CVE-2014-0578 [MEDIUM] CVE-2014-0578: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2015-3115, CVE-2015-3116, CVE-2015-3125, and CVE-2015-5116.
OSV
CVE-2015-5116: Adobe Flash Player before 13
osv·2015-07-09·CVSS 5.0
CVE-2015-5116 [MEDIUM] CVE-2015-5116: Adobe Flash Player before 13
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3115, CVE-2015-3116, and CVE-2015-3125.
No detection rules found.
No public exploits indexed.
HackerOne
CSRF possible when SOP Bypass/UXSS is available
hackerone·2015-12-30·CVSS 5.0
[MEDIUM] CSRF possible when SOP Bypass/UXSS is available
CSRF possible when SOP Bypass/UXSS is available
**Description**
If an attacker could extract content from https://hackerone.com, they could perform CSRF attacks due to the fact that:
1. Some pages prints the token in the HTML response (edit user form at https://hackerone.com/settings/profile/edit)
2. Tokens aren't bound per action
3. PATCH/DELETE can be sent via _method
Attacker being allowed to read content but not execute JS could happen if:
1. SOP Bypass in plugin (http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3115)
2. SOP Bypass in application design (https://miki.it/blog/2014/7/8/abusing-jsonp-with-rosetta-flash/)
3. UXSS (https://blog.innerht.ml/ie-uxss/)
Currently, some mitigations are in place. _method isn't allowed in GET and the Origin header is checked. This isn'
Bugzilla
flash-plugin: information disclosure issues fixed in APSB15-16
bugzilla·2015-07-08·CVSS 5.0
CVE-2015-3114 [MEDIUM] flash-plugin: information disclosure issues fixed in APSB15-16
flash-plugin: information disclosure issues fixed in APSB15-16
Adobe Security Bulletin APSB15-16 for Adobe Flash Player describes a security bypass and multiple same-origin-policy bypass vulnerabilities that can be used to disclose sensitive information when Flash Player is used to play a specially crafted SWF file.
Quoting from the APSB15-16:
These updates resolve a security bypass vulnerability that could lead to information disclosure (CVE-2015-3114).
These updates resolve vulnerabilities that could be exploited to bypass the same-origin-policy and lead to information disclosure (CVE-2014-0578, CVE-2015-3115, CVE-2015-3116, CVE-2015-3125, CVE-2015-5116).
External References:
https://helpx.adobe.com/security/products/flash-player/apsb15-16.html
Discussion:
This issue has been add
http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00017.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-07/msg00018.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1214.htmlhttp://www.securityfocus.com/bid/75594http://www.securitytracker.com/id/1032810https://helpx.adobe.com/security/products/flash-player/apsb15-16.htmlhttps://security.gentoo.org/glsa/201507-13http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00017.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-07/msg00018.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1214.htmlhttp://www.securityfocus.com/bid/75594http://www.securitytracker.com/id/1032810https://helpx.adobe.com/security/products/flash-player/apsb15-16.htmlhttps://security.gentoo.org/glsa/201507-13
2015-07-09
Published