First published: Wed Oct 14 2015(Updated: )
Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and before 11.2.202.535 on Linux, Adobe AIR before 19.0.0.213, Adobe AIR SDK before 19.0.0.213, and Adobe AIR SDK & Compiler before 19.0.0.213 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-7625, CVE-2015-7626, CVE-2015-7627, CVE-2015-7630, and CVE-2015-7634.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe AIR | <=19.0.0.190 | |
Adobe AIR SDK and Compiler | <=19.0.0.190 | |
Adobe AIR SDK & Compiler | <=19.0.0.190 | |
macOS Yosemite | ||
Microsoft Windows | ||
Google Android | ||
Adobe Flash Player for Internet Explorer 11 | <=11.2.202.521 | |
Linux Kernel | ||
Adobe Flash Player for Internet Explorer 11 | <=19.0.0.185 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-7633 is considered a critical vulnerability as it allows attackers to execute arbitrary code or cause a denial of service.
To fix CVE-2015-7633, you should upgrade Adobe Flash Player and Adobe AIR to the latest versions available.
CVE-2015-7633 affects Adobe Flash Player versions before 18.0.0.252 and certain versions of Adobe AIR and Adobe AIR SDK.
CVE-2015-7633 primarily affects Adobe applications on Windows and macOS, but other systems running vulnerable versions can also be impacted.
It is not safe to continue using affected software versions due to the risk of arbitrary code execution and potential denial of service.