First published: Tue Jul 14 2015(Updated: )
Adobe Shockwave Player before 12.1.9.159 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-5121.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Shockwave Player | <=12.1.8.158 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-5120 has a critical severity level due to its potential for remote code execution or causing a denial of service.
To fix CVE-2015-5120, update Adobe Shockwave Player to version 12.1.9.159 or later.
CVE-2015-5120 can enable attackers to execute arbitrary code or lead to memory corruption, resulting in a denial of service.
Adobe Shockwave Player versions prior to 12.1.9.159 are affected by CVE-2015-5120.
Yes, CVE-2015-5120 is distinct from CVE-2015-5121 but is part of a broader set of vulnerabilities affecting Adobe Shockwave Player.