First published: Wed Oct 15 2014(Updated: )
Adobe Flash Player before 13.0.0.250 and 14.x and 15.x before 15.0.0.189 on Windows and OS X and before 11.2.202.411 on Linux, Adobe AIR before 15.0.0.293, Adobe AIR SDK before 15.0.0.302, and Adobe AIR SDK & Compiler before 15.0.0.302 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-0558.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Macromedia Flash Player | <=11.2.202.406 | |
Linux Kernel | ||
Macromedia Flash Player | <=13.0.0.244 | |
Apple iOS and macOS | ||
Microsoft Windows | ||
Macromedia Flash Player | <=15.0.0.152 | |
Macromedia Flash Player | <=15.0.0.167 | |
Macromedia Flash Player | <=15.0.0.167 | |
Microsoft Windows 8.0 | ||
Microsoft Windows 8.1 | ||
Adobe Flash Player | <=15.0.0.167 | |
Adobe AIR | <=15.0.0.249 | |
Adobe AIR | <=15.0.0.249 | |
iStyle @cosme iPhone OS | ||
Adobe AIR | <=15.0.0.252 | |
Android | ||
Evergreen ILS | =11.4 | |
SUSE Linux | =12.3 | |
SUSE Linux | =13.1 | |
SUSE Linux Enterprise Desktop | =11-sp3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-0564 is classified as critical due to its ability to allow attackers to execute arbitrary code.
Adobe Flash Player versions before 13.0.0.250 and 14.x and 15.x before 15.0.0.189 are affected by CVE-2014-0564.
To fix CVE-2014-0564, users should update Adobe Flash Player to the latest version.
Yes, Adobe AIR versions before 15.0.0.293 are also affected by CVE-2014-0564.
CVE-2014-0564 impacts Windows, OS X, and Linux platforms running affected versions of Adobe Flash Player and Adobe AIR.