[CVE-2015-0310] Adobe Flash Player ASLR Bypass Vulnerability

SecurityDesk
2022.05.25 00:00 조회 8

CISA KEV 정보

취약점명Adobe Flash Player ASLR Bypass Vulnerability
설명Adobe Flash Player does not properly restrict discovery of memory addresses, which allows attackers to bypass the address space layout randomization (ASLR) protection mechanism.
조치사항The impacted product is end-of-life and should be disconnected if still in use.
랜섬웨어 캠페인 악용Unknown
CWECWE-264
등록일 (KEV)2022-05-25
조치 기한2022-06-15
추가 참고https://nvd.nist.gov/vuln/detail/CVE-2015-0310

NVD 상세 정보

CVSS v3.1: 7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS v2.0: 10.0 AV:N/AC:L/Au:N/C:C/I:C/A:C

설명: Adobe Flash Player before 13.0.0.262 and 14.x through 16.x before 16.0.0.287 on Windows and OS X and before 11.2.202.438 on Linux does not properly restrict discovery of memory addresses, which allows attackers to bypass the ASLR protection mechanism on Windows, and have an unspecified impact on other platforms, via unknown vectors, as exploited in the wild in January 2015.

CWE: CWE-200

참조

This product uses the NVD API but is not endorsed or certified by the NVD.



바로 가기

IT 도구 서랍

→ Unix: 2025-01-15T09:30:00
→ 날짜: 1736934600

→ ASCII: ABC
→ 문자: 65 66 67

ASCII 코드표 — 클릭하면 입력란에 추가

DecHex약어설명
DecHex문자
DecHex문자

→ 유니코드: 홍길동
→ 문자: \ud64d\uae38\ub3d9