Security Advisory

CVE-2014-0557

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2014-09-10 01:00:00
Last updated 2024-08-06 09:20:19
Assigner adobe
State PUBLISHED

Description

Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.0.249 on Windows and OS X and before 15.0.0.252 on Android, Adobe AIR SDK before 15.0.0.249, and Adobe AIR SDK & Compiler before 15.0.0.249 do not properly restrict discovery of memory addresses, which allows attackers to bypass the ASLR protection mechanism via unspecified vectors.