Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before 11.2.202.466 on Linux, Adobe AIR before 18.0.0.144 on Windows and before 18.0.0.143 on OS X and Android, Adobe AIR SDK before 18.0.0.144 on Windows and before 18.0.0.143 on OS X, and Adobe AIR SDK & Compiler before 18.0.0.144 on Windows and before 18.0.0.143 on OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Adobe Air | — | Upgrade to the latest version of Adobe AIR | Jun 9, 2015 | Jun 9, 2015 |
| Adobe Flash Apsb15 11 | — | Upgrade to Adobe Flash Player version 13.0.0.292 for WindowsUpgrade to Adobe Flash Player version 11.2.202.466 for LinuxUpgrade to Adobe Flash Player version 18.0.0.160 for WindowsUpgrade to Adobe Flash Player version 18.0.0.160 for Mac OS XUpgrade to Adobe Flash Player version 13.0.0.292 for Mac OS X | Jun 9, 2015 | Jun 9, 2015 |
| Freebsd | — | Upgrade linux-f10-flashpluginUpgrade linux-c6-flashplugin | Dec 10, 2025 | Jun 11, 2015 |
| Gentoo Linux | — | Upgrade www-plugins/adobe-flash. | Oct 30, 2017 | Jun 9, 2015 |
| Suse | — | Upgrade flash-playerUpgrade flash-player-gnome | Dec 18, 2015 | Jun 9, 2015 |
| Ubuntu | — | Upgrade adobe-flashpluginUpgrade flashplugin-nonfree | Nov 19, 2024 | Jun 10, 2015 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub