CVE-2015-3038: Adobe Flash Player
High severity, CVSS 10.0. EPSS: 7% chance of exploitation in the next 30 days.
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0347, CVE-2015-0350, CVE-2015-0352, CVE-2015-0353, CVE-2015-0354, CVE-2015-0355, CVE-2015-0360, CVE-2015-3041, CVE-2015-3042, and CVE-2015-3043.
Affected products
- Adobe Flash Player: up to and including 11.2.202.451; up to and including 13.0.0.264; version 14.0.0.125 only; version 14.0.0.145 only; version 14.0.0.176 only; version 14.0.0.179 only; …
- Opensuse Opensuse: version 13.1 only; version 13.2 only
- Red Hat Enterprise Linux Desktop Supplementary: version 5.0 only; version 6.0 only
- Red Hat Enterprise Linux Server Supplementary: version 5.0 only; version 6.0 only
- Red Hat Enterprise Linux Server Supplementary Eus: version 6.6.z only
- Red Hat Enterprise Linux Workstation Supplementary: version 6.0 only
- Suse Suse Linux Enterprise Desktop: version 11.0 only; version 12.0 only
- Suse Suse Linux Workstation Extension: version 12.0 only
Published 2015-04-14. Last modified 2026-06-17.