CVE-2014-0553
Last modified
CVE-2014-0553 is a vulnerability of currently unknown severity. Use-after-free vulnerability in Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.0.249 on Windows and OS X and before 15.0.0.252 on Android, Adobe AIR SDK before 15.0.0.249, and Adobe AIR SDK & Compiler before 15.0.0.249 allows attackers to execute arbitrary code via unspecified vectors.. EPSS estimates a 9.32% chance of exploitation in the next 30 days.
Description
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.0.249 on Windows and OS X and before 15.0.0.252 on Android, Adobe AIR SDK before 15.0.0.249, and Adobe AIR SDK & Compiler before 15.0.0.249 allows attackers to execute arbitrary code via unspecified vectors.
Metrics
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Adobe | Adobe Air Sdk | <= 14.0.0.178 | — |
| Adobe | Adobe Air Sdk | 13.0.0.83 | — |
| Adobe | Adobe Air Sdk | 13.0.0.111 | — |
| Adobe | Adobe Air Sdk | 14.0.0.110 | — |
| Adobe | Adobe Air Sdk | 14.0.0.137 | — |
| Opensuse | Opensuse | 11.4 | — |
| Opensuse | Opensuse | 12.3 | — |
| Opensuse | Opensuse | 13.1 | — |
| Suse | Suse Linux Enterprise Desktop | 11.0 | Sp3 |
| Adobe | Flash Player | <= 13.0.0.241 | — |
| Adobe | Flash Player | 13.0.0.182 | — |
| Adobe | Flash Player | 13.0.0.201 | — |
| Adobe | Flash Player | 13.0.0.206 | — |
| Adobe | Flash Player | 13.0.0.214 | — |
| Adobe | Flash Player | 13.0.0.223 | — |
| Adobe | Flash Player | 13.0.0.231 | — |
| Adobe | Flash Player | 14.0.0.125 | — |
| Adobe | Flash Player | 14.0.0.145 | — |
| Adobe | Flash Player | 14.0.0.176 | — |
| Adobe | Flash Player | 14.0.0.179 | — |
| Adobe | Flash Player | 15.0.0.144 | — |
| Adobe | Adobe Air | <= 14.0.0.179 | — |
| Adobe | Adobe Air | 13.0.0.83 | — |
| Adobe | Adobe Air | 13.0.0.111 | — |
| Adobe | Adobe Air | 14.0.0.110 | — |
| Adobe | Adobe Air | 14.0.0.137 | — |
| Adobe | Flash Player | <= 11.2.202.400 | — |
| Adobe | Flash Player | 11.2.202.223 | — |
| Adobe | Flash Player | 11.2.202.228 | — |
| Adobe | Flash Player | 11.2.202.233 | — |
| Adobe | Flash Player | 11.2.202.235 | — |
| Adobe | Flash Player | 11.2.202.236 | — |
| Adobe | Flash Player | 11.2.202.238 | — |
| Adobe | Flash Player | 11.2.202.243 | — |
| Adobe | Flash Player | 11.2.202.251 | — |
| Adobe | Flash Player | 11.2.202.258 | — |
| Adobe | Flash Player | 11.2.202.261 | — |
| Adobe | Flash Player | 11.2.202.262 | — |
| Adobe | Flash Player | 11.2.202.270 | — |
| Adobe | Flash Player | 11.2.202.273 | — |
| Adobe | Flash Player | 11.2.202.275 | — |
| Adobe | Flash Player | 11.2.202.280 | — |
| Adobe | Flash Player | 11.2.202.285 | — |
| Adobe | Flash Player | 11.2.202.291 | — |
| Adobe | Flash Player | 11.2.202.297 | — |
| Adobe | Flash Player | 11.2.202.310 | — |
| Adobe | Flash Player | 11.2.202.332 | — |
| Adobe | Flash Player | 11.2.202.335 | — |
| Adobe | Flash Player | 11.2.202.336 | — |
| Adobe | Flash Player | 11.2.202.341 | — |
Showing 50 of 57 affected configurations. See NVD for the full list.
References
- http://helpx.adobe.com/security/products/flash-player/apsb14-21.htmlPatch, Vendor Advisory
- http://helpx.adobe.com/security/products/flash-player/apsb14-21.htmlPatch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2014-0553?
How severe is CVE-2014-0553?
How do I fix CVE-2014-0553?
Are you affected by CVE-2014-0553?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
