Adobe Flash ActionScript3 ByteArray Use After Free Vulnerability

  Severity: CRITICAL
  Advisory Date: JUL 20, 2015

  DESCRIPTION

Adobe Flash Player contains a vulnerability in the ActionScript 3 ByteArray class, which can allow a remote, unauthenticated attacker to execute arbitrary code on a vulnerable system. Ref: http://blog.trendmicro.com/trendlabs-security-intelligence/unpatched-flash-player-flaws-more-pocs-found-in-hacking-team-leak/

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1006824
  Trend Micro Deep Security DPI Rule Name: 1006824 - Adobe Flash ActionScript3 ByteArray Use After Free Vulnerability

  AFFECTED SOFTWARE AND VERSION

  • Adobe Flash Player