CVE-2015-8651

CVE Published 2015-12-28
Related CWE(s) CWE-190: Integer Overflow or Wraparound
Related Vendor(s) redhat, hp, suse, adobe, opensuse
Related Product(s) version_control_repository_manager, linux_enterprise_workstation_extension, air_sdk, insight_control, enterprise_linux_workstation, air, systems_insight_manager, linux_enterprise_desktop, enterprise_linux_server, enterprise_linux_desktop, system_management_homepage, flash_player, evergreen, air_sdk_\&_compiler, matrix_operating_environment, opensuse, insight_control_server_provisioning
Exploitation Reported (CISA KEV) 2022-05-25
CVSS 3 Base Score 8.8 (HIGH)
CVSS 3 Attack Complexity LOW
CVSS 3 Attack Vector NETWORK

Integer overflow in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors.

Cyber Threat Graph Context

Explore how this CVE relates to the wider threat graph

Associated CAPEC Patterns

References