CVE-2015-3089: Buffer Overflow
Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK & Compiler before 17.0.0.172 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3078, CVE-2015-3090, and CVE-2015-3093.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2015-3089?
CVE-2015-3089 is classified as critical due to its potential to allow attackers to execute arbitrary code.
How do I fix CVE-2015-3089?
To address CVE-2015-3089, update Adobe Flash Player and Adobe AIR to the latest versions that are not vulnerable.
Which versions are affected by CVE-2015-3089?
CVE-2015-3089 affects Adobe Flash Player versions before 13.0.0.289, 14.x through 17.x before 17.0.0.188, and specific versions of Adobe AIR before 17.0.0.172.
What platforms are impacted by CVE-2015-3089?
CVE-2015-3089 impacts Adobe Flash Player and Adobe AIR users on Windows, OS X, and Linux platforms.
Is there a workaround for CVE-2015-3089?
While disabling Flash Player may mitigate risks associated with CVE-2015-3089, it is recommended to update to the latest version for full protection.