CVE-2014-9163

Published Dec 10, 2014

Last updated 6 years ago

Overview

Description
Stack-based buffer overflow in Adobe Flash Player before 13.0.0.259 and 14.x and 15.x before 15.0.0.246 on Windows and OS X and before 11.2.202.425 on Linux allows attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in December 2014.
Source
psirt@adobe.com
NVD status
Analyzed

Risk scores

CVSS 2.0

Type
Primary
Base score
10
Impact score
10
Exploitability score
10
Vector string
AV:N/AC:L/Au:N/C:C/I:C/A:C

Known exploits

Data from CISA

Vulnerability name
Adobe Flash Player Stack-Based Buffer Overflow Vulnerability
Exploit added on
Apr 13, 2022
Exploit action due
May 4, 2022
Required action
The impacted product is end-of-life and should be disconnected if still in use.

Weaknesses

nvd@nist.gov
NVD-CWE-Other

Social media

Hype score
Not currently trending

Configurations