openSUSE-SU-2015:1781Vendor advisory
http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00018.html CVE-2015-5132
Adobe Flash - '.SWF' Out-of-Bounds Memory Read (2)
Record summary
CVE-2015-5132 has a selected CVSS score of 10.0; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-5131 and CVE-2015-5133.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBAdobe Flash - '.SWF' Out-of-Bounds Memory Read (2)ExploitDB exploitby Google Security ResearchNot analyzed1 file
References
11RHSA-2015:1603Vendor advisory
http://rhn.redhat.com/errata/RHSA-2015-1603.html 76284vdb entry
http://www.securityfocus.com/bid/76284 1033235vdb entry
http://www.securitytracker.com/id/1033235 h20566.www2.hpe.comConfirmation
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05356388 h20566.www2.hpe.comConfirmation
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05385680 h20566.www2.hpe.comConfirmation
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05390722 helpx.adobe.comConfirmation
https://helpx.adobe.com/security/products/flash-player/apsb15-19.html nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2015-5132 GLSA-201508-01Vendor advisory
https://security.gentoo.org/glsa/201508-01 37857exploit
https://www.exploit-db.com/exploits/37857