CVE-2015-3077: Critical severity macromedia flash player vulnerability
Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK & Compiler before 17.0.0.172 allow attackers to execute arbitrary code by leveraging an unspecified "type confusion," a different vulnerability than CVE-2015-3084 and CVE-2015-3086.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2015-3077?
CVE-2015-3077 has been assigned a critical severity rating due to its potential to allow attackers to execute arbitrary code remotely.
How do I fix CVE-2015-3077?
To fix CVE-2015-3077, update Adobe Flash Player to version 17.0.0.188 or later, or upgrade to the latest version of Adobe AIR if you are using that software.
What software is affected by CVE-2015-3077?
CVE-2015-3077 affects Adobe Flash Player versions prior to 17.0.0.188 and Adobe AIR versions before 17.0.0.172, as well as various versions of the AIR SDK.
Can I check if my Adobe Flash Player is vulnerable to CVE-2015-3077?
You can check your Adobe Flash Player version and compare it against the affected versions listed for CVE-2015-3077 to determine vulnerability.
Is CVE-2015-3077 a common vulnerability?
CVE-2015-3077 is considered a common vulnerability as Adobe Flash Player has been a frequent target for exploits due to its widespread use.