First published: Fri Aug 14 2015(Updated: )
Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allow attackers to cause a denial of service (vector-length corruption) or possibly have unspecified other impact via unknown vectors.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe | <=18.0.0.180 | |
Adobe AIR | <=18.0.0.180 | |
Adobe AIR SDK & Compiler | <=18.0.0.180 | |
Macromedia Flash Player | <=18.0.0.209 | |
Apple iOS and macOS | ||
Microsoft Windows | ||
Macromedia Flash Player | <=11.2.202.491 | |
Linux Kernel | ||
Evergreen ILS | =11.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-5125 has a medium severity rating, primarily resulting in denial of service vulnerabilities.
To fix CVE-2015-5125, update Adobe Flash Player or Adobe AIR to version 18.0.0.232 or later.
CVE-2015-5125 affects Adobe Flash Player versions before 18.0.0.232, Adobe AIR before 18.0.0.199, and their respective SDK versions.
CVE-2015-5125 is a vulnerability that can cause denial of service through vector-length corruption.
CVE-2015-5125 is not classified as critical but poses a significant risk due to its impact on system availability.