Adobe Flash ActionScript3 ByteArray Use After Free Vulnerability (CVE-2015-5119)
Publish date: 09 de junio de 2016
Gravedad: Crítico
Identificadores de CVE : CVE-2015-5119
Fecha recomendada: 07 de julio de 2015
Descripción
Adobe Flash Player contains a vulnerability in the ActionScript 3 ByteArray class, which can allow a remote, unauthenticated attacker to execute arbitrary code on a vulnerable system.
Ref: http://blog.trendmicro.com/trendlabs-security-intelligence/unpatched-flash-player-flaws-more-pocs-found-in-hacking-team-leak/
Revelación de la información
Apply associated Trend Micro DPI Rules.
Soluciones
Parche : https://helpx.adobe.com/security/products/flash-player/apsb15-16.html
Trend Micro Deep Security DPI Rule Number: 1006824