National Vulnerability Database

National Vulnerability Database

National Vulnerability
Database

CVE-2015-5122 Detail

Description

Use-after-free vulnerability in the DisplayObject class in the ActionScript 3 (AS3) implementation in Adobe Flash Player 13.x through 13.0.0.302 on Windows and OS X, 14.x through 18.0.0.203 on Windows and OS X, 11.x through 11.2.202.481 on Linux, and 12.x through 18.0.0.204 on Linux Chrome installations allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted Flash content that leverages improper handling of the opaqueBackground property, as exploited in the wild in July 2015.

Source:  MITRE      Last Modified:  07/14/2015

Evaluator Description

CWE-416: Use After Free

Quick Info

CVE Dictionary Entry:
CVE-2015-5122
Original release date:
07/14/2015
Last revised:
12/27/2016
Source:
US-CERT/NIST

Impact

CVSS Severity (version 2.0):
CVSS v2 Base Score:
10.0 HIGH
Vector:
(AV:N/AC:L/Au:N/C:C/I:C/A:C) (legend)
Impact Subscore:
10.0
Exploitability Subscore:
10.0
CVSS Version 2 Metrics:
Access Vector:
Network exploitable
Access Complexity:
Low
Authentication:
Not required to exploit
Impact Type:
Allows unauthorized disclosure of information; Allows unauthorized modification; Allows disruption of service

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to nvd@nist.gov.

Hyperlink Resource Type Source Name
http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00028.html External Source SUSE SUSE-SU-2015:1255
http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00029.html External Source SUSE SUSE-SU-2015:1258
http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00032.html External Source SUSE openSUSE-SU-2015:1267
http://marc.info/?l=bugtraq&m=144050155601375&w=2 External Source HP HPSBMU03409
http://packetstormsecurity.com/files/132663/Adobe-Flash-opaqueBackground-Use-After-Free.html External Source MISC http://packetstormsecurity.com/files/132663/Adobe-Flash-opaqueBackground-Use-After-Free.html
http://rhn.redhat.com/errata/RHSA-2015-1235.html External Source REDHAT RHSA-2015:1235
http://www.kb.cert.org/vuls/id/338736 Third Party Advisory; US Government Resource External Source CERT-VN VU#338736
http://www.rapid7.com/db/modules/exploit/multi/browser/adobe_flash_opaque_background_uaf External Source MISC http://www.rapid7.com/db/modules/exploit/multi/browser/adobe_flash_opaque_background_uaf
http://www.securityfocus.com/bid/75712 External Source BID 75712
http://www.securitytracker.com/id/1032890 External Source SECTRACK 1032890
http://www.us-cert.gov/ncas/alerts/TA15-195A US Government Resource External Source CERT TA15-195A
https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04796784 External Source HP SSRT102253
https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04952467 External Source CONFIRM https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04952467
https://helpx.adobe.com/security/products/flash-player/apsa15-04.html Vendor Advisory External Source CONFIRM https://helpx.adobe.com/security/products/flash-player/apsa15-04.html
https://helpx.adobe.com/security/products/flash-player/apsb15-18.html External Source CONFIRM https://helpx.adobe.com/security/products/flash-player/apsb15-18.html
https://security.gentoo.org/glsa/201508-01 External Source GENTOO GLSA-201508-01
https://www.exploit-db.com/exploits/37599/ External Source EXPLOIT-DB 37599
https://www.fireeye.com/blog/threat-research/2015/07/cve-2015-5122_-_seco.html External Source MISC https://www.fireeye.com/blog/threat-research/2015/07/cve-2015-5122_-_seco.html

Technical Details

Vulnerability Type (View All)

Vulnerable software and versions Switch to CPE 2.2

Configuration 1
AND
OR
cpe:2.3:a:adobe:flash_player:13.0.0.182:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:13.0.0.201:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:13.0.0.206:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:13.0.0.214:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:13.0.0.223:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:13.0.0.231:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:13.0.0.241:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:13.0.0.244:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:13.0.0.250:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:13.0.0.257:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:13.0.0.258:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:13.0.0.259:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:13.0.0.260:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:13.0.0.262:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:13.0.0.264:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:13.0.0.289:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:13.0.0.292:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:13.0.0.302:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:14.0.0.125:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:14.0.0.145:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:14.0.0.176:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:14.0.0.179:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:15.0.0.152:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:15.0.0.167:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:15.0.0.189:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:15.0.0.223:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:15.0.0.239:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:15.0.0.246:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:16.0.0.235:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:16.0.0.257:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:16.0.0.287:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:16.0.0.296:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:17.0.0.134:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:17.0.0.169:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:17.0.0.188:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:17.0.0.190:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:18.0.0.160:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:18.0.0.194:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:18.0.0.203:*:*:*:*:*:*:*
OR
cpe:2.3:o:apple:mac_os_x:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
Configuration 2
AND
OR
cpe:2.3:a:adobe:flash_player:11.0.1.153:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1.102.59:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1.102.62:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1.102.63:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1.111.8:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1.111.44:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1.111.50:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1.111.54:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1.111.64:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1.111.73:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1.115.7:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1.115.34:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1.115.48:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1.115.54:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1.115.58:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1.115.59:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1.115.63:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1.115.69:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.1.115.81:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.223:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.228:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.233:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.235:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.236:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.238:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.243:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.251:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.258:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.261:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.262:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.270:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.273:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.275:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.280:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.285:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.291:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.297:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.310:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.327:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.332:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.335:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.336:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.341:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.346:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.350:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.356:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.359:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.378:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.394:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.411:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.424:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.425:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.429:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.438:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.440:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.442:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:11.2.202.451:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*    versions up to (including) 11.2.202.468
cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*    versions up to (including) 18.0.0.204
Showing 100 of 102 CPEs, view all CPEs here.

Denotes Vulnerable Software
Are we missing a CPE here? Please let us know.

Change History 13 change records found - show changes