CVE-2015-0348: Adobe Flash Player
High severity, CVSS 10.0. EPSS: 8.8% chance of exploitation in the next 30 days.
Buffer overflow in Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code via unspecified vectors.
Affected products
- Adobe Flash Player: up to and including 13.0.0.264; version 14.0.0.125 only; version 14.0.0.145 only; version 14.0.0.176 only; version 14.0.0.179 only; version 15.0.0.152 only; …
- Opensuse Opensuse: version 13.1 only; version 13.2 only
- Red Hat Enterprise Linux Desktop Supplementary: version 5.0 only; version 6.0 only
- Red Hat Enterprise Linux Server Supplementary: version 5.0 only; version 6.0 only
- Red Hat Enterprise Linux Server Supplementary Eus: version 6.6.z only
- Red Hat Enterprise Linux Workstation Supplementary: version 6.0 only
- Suse Suse Linux Enterprise Desktop: version 11.0 only; version 12.0 only
- Suse Suse Linux Workstation Extension: version 12.0 only
Published 2015-04-14. Last modified 2026-06-17.