VDB

CVE-2015-3103

CVE-2015-3103 PUBLISHED

Use-after-free vulnerability in Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before 11.2.202.466 on Linux, Adobe AIR before 18.0.0.144 on Windows and before 18.0.0.143 on OS X and Android, Adobe AIR SDK before 18.0.0.144 on Windows and before 18.0.0.143 on OS X, and Adobe AIR SDK & Compiler before 18.0.0.144 on Windows and before 18.0.0.143 on OS X allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3106 and CVE-2015-3107.

EPSS 1.91% · 83.6th percentile

Risk Scores

EPSS Score
1.91%
83.6th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSflashplugin-nonfree11.2.202.310ubuntu1, 11.2.202.332ubuntu1, 11.2.202.335ubuntu1

Timeline

  • CVE Published
  • Nov 12, 2019 PoC Published
  • Feb 4, 2022 EPSS Score
  • Mar 29, 2022 EPSS Score
  • Jul 12, 2022 EPSS Score
  • Sep 3, 2022 EPSS Score
  • Dec 18, 2022 EPSS Score
  • Feb 8, 2023 EPSS Score
  • Apr 2, 2023 EPSS Score
  • May 25, 2023 EPSS Score
  • Sep 7, 2023 EPSS Score
  • Oct 13, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›