← Back to CVE List
Vulnerability Intelligence Report

CVE-2014-0564

Adobe Flash Player before 13.0.0.250 and 14.x and 15.x before 15.0.0.189 on Windows and OS X and before 11.2.202.411 on Linux, Adobe AIR before 15.0.0.293, Adobe AIR SDK before 15.0.0.302, and Adobe AIR SDK & Compiler before 15.0.0.302 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-0558.

No Active Exploit Signals
CVSS Base Score
10.0
HIGH
EPSS Probability:6.19%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Affected Products & Versions

Vendor Product Affected Versions
adobe flash_player all
linux linux_kernel all
apple macos all
microsoft windows all
microsoft windows_8 all
microsoft windows_8.1 all
adobe flash_player_desktop_runtime all
adobe air_desktop_runtime all
adobe air_sdk all
apple iphone_os all
google android all
opensuse evergreen 11.4
opensuse opensuse 12.3, 13.1
suse linux_enterprise_desktop 11

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
6.192%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityAdobe Systems Incorporated · Vendor · USA
Reserved2013-12-20T00:00:00
Published2014-10-15T10:00:00
Patch Date2014-10-14
Last Updated2024-08-06T09:20:19

LINK COPIED TO CLIPBOARD