CVE-2014-8439

Published Nov 25, 2014

Last updated 3 years ago

Overview

Description
Adobe Flash Player before 13.0.0.258 and 14.x and 15.x before 15.0.0.239 on Windows and OS X and before 11.2.202.424 on Linux, Adobe AIR before 15.0.0.293, Adobe AIR SDK before 15.0.0.302, and Adobe AIR SDK & Compiler before 15.0.0.302 allow attackers to execute arbitrary code or cause a denial of service (invalid pointer dereference) via unspecified vectors.
Source
psirt@adobe.com
NVD status
Analyzed

Risk scores

CVSS 2.0

Type
Primary
Base score
10
Impact score
10
Exploitability score
10
Vector string
AV:N/AC:L/Au:N/C:C/I:C/A:C

Known exploits

Data from CISA

Vulnerability name
Adobe Flash Player Dereferenced Pointer Vulnerability
Exploit added on
May 25, 2022
Exploit action due
Jun 15, 2022
Required action
The impacted product is end-of-life and should be disconnected if still in use.

Weaknesses

nvd@nist.gov
CWE-119

Social media

Hype score
Not currently trending

Configurations