CVE-2015-3079: Medium severity macromedia flash player vulnerability
Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK & Compiler before 17.0.0.172 allow attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2015-3079?
CVE-2015-3079 is rated as a critical vulnerability that can lead to arbitrary code execution.
How do I fix CVE-2015-3079?
To mitigate CVE-2015-3079, users should update Adobe Flash Player to version 17.0.0.188 or later.
Which versions of Adobe Flash Player are affected by CVE-2015-3079?
CVE-2015-3079 affects Adobe Flash Player versions prior to 13.0.0.289, 14.x through 17.x before 17.0.0.188, and 11.2.202.460 on Linux.
Are Adobe AIR applications impacted by CVE-2015-3079?
Yes, CVE-2015-3079 also impacts Adobe AIR versions before 17.0.0.172.
Is it safe to use systems running macOS or Windows with vulnerable Adobe Flash Player versions?
Using systems with vulnerable Adobe Flash Player versions poses a risk to security and should be addressed by upgrading to the latest versions.