cbcvebase.
CVE-2015-5133
published 2015-08-14

CVE-2015-5133: Buffer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before…

PriorityP271critical10CVSS 2.0
AVNACLAuNCCICAC
EXPLOIT
EPSS
50.73%
98.8th percentile
Buffer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-5131 and CVE-2015-5132.

Affected

6 ranges
VendorProductVersion rangeFixed in
adobeair<= 18.0.0.180
adobeair_sdk<= 18.0.0.180
adobeair_sdk_compiler<= 18.0.0.180
adobeflash_player<= 18.0.0.209
adobeflash_player<= 11.2.202.491
opensuseevergreen

Detection & IOCsextracted from sources · hover to see the quote

filenamesignal_sigsegv_7ffff710e9d3_881_11431348555663755408.ttf.swf
filename11431348555663755408.ttf.swf
urlhttps://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/37858.zip
  • Vulnerability is triggered by a mutated/malformed TTF file embedded inside a SWF; look for SWF files containing anomalous embedded TTF font data causing out-of-bounds reads.
  • The out-of-bounds read is caused by an overly large index value in EAX relative to a dynamically allocated buffer pointed to by ECX; the 32-bit value read from unmapped memory is used as a pointer to immediately read 12 bytes further up the call chain.
  • ·Vulnerability reliably reproduces only on latest Adobe Flash Player Projector for Windows and Google Chrome for Windows at time of disclosure; Linux behavior may differ.

CVSS provenance

nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
osv10.0CRITICAL
vendor_redhat10.0CRITICAL
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.