First published: Tue Sep 22 2015(Updated: )
Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521 on Linux, Adobe AIR before 19.0.0.190, Adobe AIR SDK before 19.0.0.190, and Adobe AIR SDK & Compiler before 19.0.0.190 allow attackers to execute arbitrary code or cause a denial of service (stack memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-5579.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Macromedia Flash Player | <=13.0.0.289 | |
Macromedia Flash Player | =14.0.0.125 | |
Macromedia Flash Player | =14.0.0.145 | |
Macromedia Flash Player | =14.0.0.176 | |
Macromedia Flash Player | =14.0.0.179 | |
Macromedia Flash Player | =15.0.0.152 | |
Macromedia Flash Player | =15.0.0.167 | |
Macromedia Flash Player | =15.0.0.189 | |
Macromedia Flash Player | =15.0.0.223 | |
Macromedia Flash Player | =15.0.0.239 | |
Macromedia Flash Player | =15.0.0.246 | |
Macromedia Flash Player | =16.0.0.235 | |
Macromedia Flash Player | =16.0.0.257 | |
Macromedia Flash Player | =16.0.0.287 | |
Macromedia Flash Player | =16.0.0.296 | |
Macromedia Flash Player | =17.0.0.134 | |
Macromedia Flash Player | =17.0.0.169 | |
Macromedia Flash Player | =17.0.0.188 | |
Macromedia Flash Player | =17.0.0.190 | |
Macromedia Flash Player | =17.0.0.191 | |
Macromedia Flash Player | =18.0.0.160 | |
Macromedia Flash Player | =18.0.0.194 | |
Macromedia Flash Player | =18.0.0.203 | |
Macromedia Flash Player | =18.0.0.209 | |
Macromedia Flash Player | =18.0.0.232 | |
Apple iOS and macOS | ||
Microsoft Windows Operating System | ||
Macromedia Flash Player | <=11.2.202.508 | |
Linux Kernel | ||
Adobe | <=18.0.0.143 | |
Android | ||
Adobe | <=18.0.0.199 | |
Adobe AIR | <=18.0.0.199 | |
Adobe AIR SDK & Compiler | <=18.0.0.180 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-5567 is classified as critical due to its ability to allow arbitrary code execution.
To fix CVE-2015-5567, update Adobe Flash Player to version 18.0.0.241 or later, or apply the appropriate patches from Adobe.
CVE-2015-5567 affects Adobe Flash Player on Windows, OS X, and Linux, as well as Adobe AIR and its SDK.
Adobe Flash Player versions prior to 18.0.0.241 and 19.x before 19.0.0.185 are vulnerable to CVE-2015-5567.
Disabling certain features may reduce risk, but it is highly advised to upgrade to a non-vulnerable version for complete protection against CVE-2015-5567.