First published: Wed Dec 10 2014(Updated: )
Adobe Flash Player before 13.0.0.259 and 14.x through 16.x before 16.0.0.235 on Windows and OS X and before 11.2.202.425 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-9164.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Flash Player for Internet Explorer 11 | >=13.0<13.0.0.259 | |
Adobe Flash Player for Internet Explorer 11 | >=14.0<=16.0.0.235 | |
macOS Yosemite | ||
Microsoft Windows | ||
Adobe Flash Player for Internet Explorer 11 | >=11.0<11.2.202.425 | |
Linux Kernel |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-0587 has a critical severity rating due to the potential for arbitrary code execution and denial of service.
To fix CVE-2014-0587, update Adobe Flash Player to version 13.0.0.259 or later, and for 14.x to 16.x, update to version 16.0.0.235 or later.
The impact of CVE-2014-0587 allows attackers to execute arbitrary code or cause memory corruption, potentially compromising affected systems.
CVE-2014-0587 affects Adobe Flash Player versions before 13.0.0.259, 14.x to 16.x before 16.0.0.235, and 11.2.202.425 on Linux.
Connected systems running outdated Adobe Flash Player on Windows, OS X, or Linux may be vulnerable to CVE-2014-0587.