CVE-2015-5560
published 2015-08-14CVE-2015-5560: Integer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK…
PriorityP184critical10CVSS 2.0
AVNACLAuNCCICAC
ITWEXPLOITVulnCheck KEV
Exploited in the wild
EPSS
65.96%
99.2th percentile
Integer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allows attackers to execute arbitrary code via unspecified vectors.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | air | <= 18.0.0.180 | — |
| adobe | air_sdk | <= 18.0.0.180 | — |
| adobe | air_sdk_compiler | <= 18.0.0.180 | — |
| adobe | flash_player | <= 11.2.202.491 | — |
| adobe | flash_player | <= 18.0.0.209 | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Trigger condition: MP3 file with compressed ID3 tag data larger than 0x2aaaaaaa bytes causes integer overflow during buffer allocation for string conversion — monitor for oversized compressed ID3 tags loaded by Flash Player. ↗
- →Exploitation is limited to 64-bit platforms only — prioritize detection/monitoring on 64-bit Flash Player deployments. ↗
- →Attack vector involves a SWF file loading an external MP3 (tag.mp3) with malicious ID3 data — look for Flash processes loading MP3 files with anomalously large compressed ID3 sections. ↗
- ·Vulnerable versions span multiple products and platforms; patched thresholds differ by OS — Windows/OS X patched at 18.0.0.232, Linux at 11.2.202.508, AIR/SDK/Compiler at 18.0.0.199. ↗
CVSS provenance
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
osv10.0CRITICAL
vulncheck10.0CRITICAL
vendor_redhat10.0CRITICAL
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
flash-plugin: multiple code execution flaws (APSB15-19)
vendor_redhat·2015-08-12·CVSS 10.0
CVE-2015-5560 [CRITICAL] flash-plugin: multiple code execution flaws (APSB15-19)
flash-plugin: multiple code execution flaws (APSB15-19)
Integer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allows attackers to execute arbitrary code via unspecified vectors.
GHSA
GHSA-hcv2-rj94-5cj5: Integer overflow in Adobe Flash Player before 18
ghsa_unreviewed·2022-05-14
CVE-2015-5560 [HIGH] GHSA-hcv2-rj94-5cj5: Integer overflow in Adobe Flash Player before 18
Integer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allows attackers to execute arbitrary code via unspecified vectors.
OSV
CVE-2015-5560: Integer overflow in Adobe Flash Player before 18
osv·2015-08-14·CVSS 10.0
CVE-2015-5560 [CRITICAL] CVE-2015-5560: Integer overflow in Adobe Flash Player before 18
Integer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allows attackers to execute arbitrary code via unspecified vectors.
VulnCheck
Adobe Flash Player, AIR, and AIR SDK Unspecified Arbitrary Code Execution
vulncheck·2015·CVSS 10.0
CVE-2015-5560 [CRITICAL] Adobe Flash Player, AIR, and AIR SDK Unspecified Arbitrary Code Execution
Adobe Flash Player, AIR, and AIR SDK Unspecified Arbitrary Code Execution
Integer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allows attackers to execute arbitrary code via unspecified vectors.
Affected: Adobe Flash Player
Required Action: Apply remediations or mitigations per vendor instructions or discontinue use of the product if remediation or mitigations are unavailable.
Exploitation References: https://securelist.com/it-threat-evolution-in-q3-2015/72493/; https://securelist.com/kaspersky-security-bulletin-2015-overall-statistics-for-2015/73038/
No detection rules found.
http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00018.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1603.htmlhttp://www.securityfocus.com/bid/76289http://www.securitytracker.com/id/1033235https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05356388https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05385680https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05390722https://helpx.adobe.com/security/products/flash-player/apsb15-19.htmlhttps://security.gentoo.org/glsa/201508-01http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00018.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1603.htmlhttp://www.securityfocus.com/bid/76289http://www.securitytracker.com/id/1033235https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05356388https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05385680https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05390722https://helpx.adobe.com/security/products/flash-player/apsb15-19.htmlhttps://security.gentoo.org/glsa/201508-01
2015-08-14
Published
Exploited in the wild