Adobe Flash Player Type Confusion Vulnerability (CVE-2015-0317)
Severity: CRITICAL
CVE Identifier: 2015-0317,apsb15-04
Advisory Date: JUL 21, 2015
DESCRIPTION
Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and before 11.2.202.442 on Linux allows attackers to execute arbitrary code by leveraging an unspecified "type confusion", a different vulnerability than CVE-2015-0319.
TREND MICRO PROTECTION INFORMATION
Apply associated Trend Micro DPI Rules.
SOLUTION
Trend Micro Deep Security DPI Rule Number: 1006514
Trend Micro Deep Security DPI Rule Name: 1006514 - Adobe Flash Player Type Confusion Vulnerability (CVE-2015-0317)
AFFECTED SOFTWARE AND VERSION
- adobe flash_player 11.2.202.440
- adobe flash_player 13.0.0.264
- adobe flash_player 14.0.0.125
- adobe flash_player 14.0.0.145
- adobe flash_player 14.0.0.176
- adobe flash_player 14.0.0.179
- adobe flash_player 15.0.0.152
- adobe flash_player 15.0.0.167
- adobe flash_player 15.0.0.189
- adobe flash_player 15.0.0.223
- adobe flash_player 15.0.0.239
- adobe flash_player 15.0.0.246
- adobe flash_player 16.0.0.235
- adobe flash_player 16.0.0.257
- adobe flash_player 16.0.0.287
- adobe flash_player 16.0.0.296