CVE-2015-3090: Buffer Overflow
Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK & Compiler before 17.0.0.172 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3078, CVE-2015-3089, and CVE-2015-3093.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2015-3090?
CVE-2015-3090 is rated as critical due to the potential for attackers to execute arbitrary code and compromise affected systems.
How do I fix CVE-2015-3090?
To mitigate CVE-2015-3090, you should update Adobe Flash Player and Adobe AIR to the latest versions that have addressed this vulnerability.
Which versions of software are affected by CVE-2015-3090?
CVE-2015-3090 affects Adobe Flash Player versions prior to 13.0.0.289, 14.x through 17.x prior to 17.0.0.188, and Adobe AIR versions prior to 17.0.0.172.
Who can exploit CVE-2015-3090?
CVE-2015-3090 can be exploited by attackers specifically targeting outdated and unpatched installations of Adobe Flash Player and Adobe AIR.
What are the potential impacts of CVE-2015-3090?
The impacts of CVE-2015-3090 include the potential for remote code execution, leading to a full system compromise or denial of service.