U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2015-3120

Change History

Modified Analysis by NIST 7/10/2015 10:21:10 AM

Action Type Old Value New Value
Added CVSS V2

								
							
							
						
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Added CWE

								
							
							
						
NVD-CWE-Other
Added CPE Configuration

								
							
							
						
Configuration 1
     AND
          OR
               *cpe:2.3:a:adobe:flash_player:11.2.202.468:*:*:*:*:*:*:* (and previous)
          OR
               cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
Configuration 2
     AND
          *cpe:2.3:a:adobe:air_sdk_\&_compiler:18.0.0.144:*:*:*:*:*:*:* (and previous)
          *cpe:2.3:a:adobe:air_sdk:18.0.0.144:*:*:*:*:*:*:* (and previous)
          *cpe:2.3:a:adobe:air:18.0.0.144:*:*:*:*:*:*:* (and previous)
Configuration 3
     AND
          OR
               *cpe:2.3:a:adobe:flash_player:13.0.0.289:*:*:*:*:*:*:* (and previous)
               *cpe:2.3:a:adobe:flash_player:14.0.0.125:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:14.0.0.145:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:14.0.0.176:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:14.0.0.179:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:15.0.0.152:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:15.0.0.167:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:15.0.0.189:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:15.0.0.223:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:15.0.0.239:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:15.0.0.246:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:16.0.0.235:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:16.0.0.257:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:16.0.0.287:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:16.0.0.296:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:17.0.0.134:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:17.0.0.169:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:17.0.0.188:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:17.0.0.190:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:18.0.0.160:*:*:*:*:*:*:*
               *cpe:2.3:a:adobe:flash_player:18.0.0.194:*:*:*:*:*:*:*
          OR
               cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
               cpe:2.3:o:apple:mac_os_x:-:*:*:*:*:*:*:*
Changed Reference Type
https://helpx.adobe.com/security/products/flash-player/apsb15-16.html No Types Assigned
https://helpx.adobe.com/security/products/flash-player/apsb15-16.html Advisory, Patch
Added Evaluator Description

								
							
							
						
<a href="http://cwe.mitre.org/data/definitions/843.html">CWE-843: Access of Resource Using Incompatible Type ('Type Confusion')</a>