CVE-2014-0558: Code Injection
Adobe Flash Player before 13.0.0.250 and 14.x and 15.x before 15.0.0.189 on Windows and OS X and before 11.2.202.411 on Linux, Adobe AIR before 15.0.0.293, Adobe AIR SDK before 15.0.0.302, and Adobe AIR SDK & Compiler before 15.0.0.302 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-0564.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2014-0558?
CVE-2014-0558 has a critical severity rating due to the potential for attackers to execute arbitrary code.
How do I fix CVE-2014-0558?
To fix CVE-2014-0558, update Adobe Flash Player to version 13.0.0.250 or later, versions 14.x or later, or versions 15.x to 15.0.0.189.
Which versions of Adobe products are affected by CVE-2014-0558?
CVE-2014-0558 affects Adobe Flash Player versions earlier than 13.0.0.250, Adobe AIR versions before 15.0.0.293, and Adobe AIR SDK versions before 15.0.0.302.
What types of systems are vulnerable to CVE-2014-0558?
CVE-2014-0558 impacts Windows, OS X, and Linux systems running the affected versions of Adobe Flash Player and Adobe AIR.
What are the potential impacts of CVE-2014-0558?
The potential impacts of CVE-2014-0558 include remote code execution and denial of service on vulnerable systems.