CVE-2014-0588: Use After Free
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on Windows and OS X and before 11.2.202.418 on Linux, Adobe AIR before 15.0.0.356, Adobe AIR SDK before 15.0.0.356, and Adobe AIR SDK & Compiler before 15.0.0.356 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-0573 and CVE-2014-8438.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2014-0588?
CVE-2014-0588 is rated as critical due to its ability to allow remote code execution.
How do I fix CVE-2014-0588?
To fix CVE-2014-0588, upgrade Adobe Flash Player to version 13.0.0.253 or later, or apply the available security patch.
Which Adobe Flash Player versions are affected by CVE-2014-0588?
CVE-2014-0588 affects Adobe Flash Player versions prior to 13.0.0.252, 14.x before 15.0.0.223, and 15.x before 15.0.0.223.
Does CVE-2014-0588 affect Adobe AIR?
Yes, CVE-2014-0588 affects Adobe AIR versions prior to 15.0.0.356.
Can CVE-2014-0588 be exploited on Linux systems?
Yes, CVE-2014-0588 can be exploited on Linux systems running vulnerable versions of Adobe Flash Player.