CVE-2015-4448
Estado: ModificadaAlta (10)—
Vulnerabilidad de uso después de liberación en la memoria en Adobe Reader y Acrobat 10.x anterior a 10.1.15 y 11.x anterior a 11.0.12, Acrobat y Acrobat Reader DC Classic anterior a 2015.006.30060 y Acrobat y Acrobat Reader DC Continuous anterior a 2015.008.20082 en Windows y OS X permite a atacantes ejecutar código arbitrario a través de vectores no especificados, una vulnerabilidad diferente a CVE-2015-5095, CVE-2015-5099, CVE-2015-5101, CVE-2015-5111, CVE-2015-5113, y CVE-2015-5114.
CVSS
- Versión: 2.0
- Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C
- Puntuación base: 10
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 6.59%
- Percentil entre todas las CVEs puntuadas: 94
- Fecha de la puntuación: 10/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (4)
CWE
- CWE-416
Referencias
- http://www.securityfocus.com/bid/75739
- http://www.securitytracker.com/id/1032892
- https://helpx.adobe.com/security/products/reader/apsb15-15.html
- https://www.verisign.com/en_US/security-services/security-intelligence/vulnerability-reports/articles/index.xhtml?id=1201
- http://www.securityfocus.com/bid/75739
- http://www.securitytracker.com/id/1032892
- https://helpx.adobe.com/security/products/reader/apsb15-15.html
- https://www.verisign.com/en_US/security-services/security-intelligence/vulnerability-reports/articles/index.xhtml?id=1201
JSON original (NVD)
Mostrar
{
"id": "CVE-2015-4448",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 10,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"authentication": "NONE",
"integrityImpact": "COMPLETE",
"accessComplexity": "LOW",
"availabilityImpact": "COMPLETE",
"confidentialityImpact": "COMPLETE"
},
"acInsufInfo": true,
"impactScore": 10,
"baseSeverity": "HIGH",
"obtainAllPrivilege": false,
"exploitabilityScore": 10,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "psirt@adobe.com",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2015-07-15T14:59:11.707",
"references": [
{
"url": "http://www.securityfocus.com/bid/75739",
"tags": [
"Third Party Advisory",
"VDB Entry"
],
"source": "psirt@adobe.com"
},
{
"url": "http://www.securitytracker.com/id/1032892",
"tags": [
"Third Party Advisory",
"VDB Entry"
],
"source": "psirt@adobe.com"
},
{
"url": "https://helpx.adobe.com/security/products/reader/apsb15-15.html",
"tags": [
"Patch",
"Vendor Advisory"
],
"source": "psirt@adobe.com"
},
{
"url": "https://www.verisign.com/en_US/security-services/security-intelligence/vulnerability-reports/articles/index.xhtml?id=1201",
"tags": [
"Third Party Advisory",
"VDB Entry"
],
"source": "psirt@adobe.com"
},
{
"url": "http://www.securityfocus.com/bid/75739",
"tags": [
"Third Party Advisory",
"VDB Entry"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securitytracker.com/id/1032892",
"tags": [
"Third Party Advisory",
"VDB Entry"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://helpx.adobe.com/security/products/reader/apsb15-15.html",
"tags": [
"Patch",
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://www.verisign.com/en_US/security-services/security-intelligence/vulnerability-reports/articles/index.xhtml?id=1201",
"tags": [
"Third Party Advisory",
"VDB Entry"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-416"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Use-after-free vulnerability in Adobe Reader and Acrobat 10.x before 10.1.15 and 11.x before 11.0.12, Acrobat and Acrobat Reader DC Classic before 2015.006.30060, and Acrobat and Acrobat Reader DC Continuous before 2015.008.20082 on Windows and OS X allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-5095, CVE-2015-5099, CVE-2015-5101, CVE-2015-5111, CVE-2015-5113, and CVE-2015-5114."
},
{
"lang": "es",
"value": "Vulnerabilidad de uso después de liberación en la memoria en Adobe Reader y Acrobat 10.x anterior a 10.1.15 y 11.x anterior a 11.0.12, Acrobat y Acrobat Reader DC Classic anterior a 2015.006.30060 y Acrobat y Acrobat Reader DC Continuous anterior a 2015.008.20082 en Windows y OS X permite a atacantes ejecutar código arbitrario a través de vectores no especificados, una vulnerabilidad diferente a CVE-2015-5095, CVE-2015-5099, CVE-2015-5101, CVE-2015-5111, CVE-2015-5113, y CVE-2015-5114."
}
],
"lastModified": "2026-06-17T00:27:17.820",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:adobe:acrobat:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "A2476537-AFF5-423A-92A7-53A05459DFA6",
"versionEndIncluding": "10.1.14",
"versionStartIncluding": "10.0"
},
{
"criteria": "cpe:2.3:a:adobe:acrobat:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "2A223BA4-D7D0-4D97-86CF-C695B687E2F3",
"versionEndIncluding": "11.0.11",
"versionStartIncluding": "11.0.0"
},
{
"criteria": "cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:classic:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D6622F20-8DE4-4284-BA45-1FBC41A3E06F",
"versionEndExcluding": "15.006.30060",
"versionStartIncluding": "15.006.30033"
},
{
"criteria": "cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:continuous:*:*:*",
"vulnerable": true,
"matchCriteriaId": "5C9A8A87-4113-4FCC-9913-27572D7C7580",
"versionEndExcluding": "15.008.20082",
"versionStartIncluding": "15.007.20033"
},
{
"criteria": "cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "68E03A1A-613F-4B54-B9BA-B2C8CAFA3037",
"versionEndIncluding": "10.1.14",
"versionStartIncluding": "10.0"
},
{
"criteria": "cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "4B0D83A4-4029-4C39-B1D4-E38BE5B4BED9",
"versionEndIncluding": "11.0.11",
"versionStartIncluding": "11.0.0"
},
{
"criteria": "cpe:2.3:a:adobe:acrobat_reader_dc:*:*:*:*:classic:*:*:*",
"vulnerable": true,
"matchCriteriaId": "76471725-ED80-45B5-B8A5-85F47FEA4E18",
"versionEndExcluding": "15.006.30060",
"versionStartIncluding": "15.006.30033"
},
{
"criteria": "cpe:2.3:a:adobe:acrobat_reader_dc:*:*:*:*:continuous:*:*:*",
"vulnerable": true,
"matchCriteriaId": "DDE9EB8A-407F-4707-8AF0-E957DDE76D10",
"versionEndExcluding": "15.008.20082",
"versionStartIncluding": "15.007.20033"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "387021A0-AF36-463C-A605-32EA7DAC172E"
},
{
"criteria": "cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "A2572D17-1DE6-457B-99CC-64AFD54487EA"
}
],
"operator": "OR"
}
],
"operator": "AND"
}
],
"sourceIdentifier": "psirt@adobe.com"
}