« Volver al listado

CVE-2015-0325

Estado: ModificadaAlta (10)—

Adobe Flash Player anterior a 13.0.0.269 y 14.x hasta 16.x anterior a 16.0.0.305 en Windows y OS X y anterior a 11.2.202.442 en Linux permite a atacantes causar una denegación de servicio (referencia a puntero nulo) o posiblemente tener otro impacto no especificado a través de vectores desconocidos, una vulnerabilidad diferente a CVE-2015-0326 y CVE-2015-0328.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2015-0325",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 10,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "authentication": "NONE",
          "integrityImpact": "COMPLETE",
          "accessComplexity": "LOW",
          "availabilityImpact": "COMPLETE",
          "confidentialityImpact": "COMPLETE"
        },
        "acInsufInfo": true,
        "impactScore": 10,
        "baseSeverity": "HIGH",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "psirt@adobe.com",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2015-02-06T00:59:10.233",
  "references": [
    {
      "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00006.html",
      "source": "psirt@adobe.com"
    },
    {
      "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00007.html",
      "source": "psirt@adobe.com"
    },
    {
      "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00008.html",
      "source": "psirt@adobe.com"
    },
    {
      "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00009.html",
      "source": "psirt@adobe.com"
    },
    {
      "url": "http://rhn.redhat.com/errata/RHSA-2015-0140.html",
      "source": "psirt@adobe.com"
    },
    {
      "url": "http://secunia.com/advisories/62886",
      "source": "psirt@adobe.com"
    },
    {
      "url": "http://secunia.com/advisories/62895",
      "source": "psirt@adobe.com"
    },
    {
      "url": "http://security.gentoo.org/glsa/glsa-201502-02.xml",
      "source": "psirt@adobe.com"
    },
    {
      "url": "http://www.securityfocus.com/bid/72514",
      "source": "psirt@adobe.com"
    },
    {
      "url": "http://www.securitytracker.com/id/1031706",
      "source": "psirt@adobe.com"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/100711",
      "source": "psirt@adobe.com"
    },
    {
      "url": "https://helpx.adobe.com/security/products/flash-player/apsb15-04.html",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "psirt@adobe.com"
    },
    {
      "url": "https://technet.microsoft.com/library/security/2755801",
      "source": "psirt@adobe.com"
    },
    {
      "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00006.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00007.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00008.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00009.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://rhn.redhat.com/errata/RHSA-2015-0140.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://secunia.com/advisories/62886",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://secunia.com/advisories/62895",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://security.gentoo.org/glsa/glsa-201502-02.xml",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/72514",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securitytracker.com/id/1031706",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/100711",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://helpx.adobe.com/security/products/flash-player/apsb15-04.html",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://technet.microsoft.com/library/security/2755801",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-Other"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows attackers to cause a denial of service (NULL pointer dereference) or possibly have unspecified other impact via unknown vectors, a different vulnerability than CVE-2015-0326 and CVE-2015-0328."
    },
    {
      "lang": "es",
      "value": "Adobe Flash Player anterior a 13.0.0.269 y 14.x hasta 16.x anterior a 16.0.0.305 en Windows y OS X y anterior a 11.2.202.442 en Linux permite a atacantes causar una denegación de servicio (referencia a puntero nulo) o posiblemente tener otro impacto no especificado a través de vectores desconocidos, una vulnerabilidad diferente a CVE-2015-0326 y CVE-2015-0328."
    }
  ],
  "lastModified": "2026-06-17T00:20:00.340",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "BD7D850A-22AB-4392-9322-B7C85C81FCAB",
              "versionEndIncluding": "11.2.202.440"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "703AF700-7A70-47E2-BC3A-7FD03B3CA9C1"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "35A39AB2-E3C6-4C70-8CC9-0050184DB2B5",
              "versionEndIncluding": "13.0.0.264"
            },
            {
              "criteria": "cpe:2.3:a:adobe:flash_player:14.0.0.125:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D5D7202D-56DF-400B-9F09-E7D9938222D3"
            },
            {
              "criteria": "cpe:2.3:a:adobe:flash_player:14.0.0.145:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "4D4F0D21-A64B-46C1-9591-96529661DF0B"
            },
            {
              "criteria": "cpe:2.3:a:adobe:flash_player:14.0.0.176:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "86961019-3B81-458E-949F-A2F006EA55FE"
            },
            {
              "criteria": "cpe:2.3:a:adobe:flash_player:14.0.0.179:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "25895BE9-71FD-4DE7-90FC-0199470A8738"
            },
            {
              "criteria": "cpe:2.3:a:adobe:flash_player:15.0.0.152:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "4D55A950-7D48-413C-AD43-6AC64FBE790C"
            },
            {
              "criteria": "cpe:2.3:a:adobe:flash_player:15.0.0.167:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "F1A22B74-453D-4A8A-B79A-2B3143A0D995"
            },
            {
              "criteria": "cpe:2.3:a:adobe:flash_player:15.0.0.189:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "3FE4B077-67D1-4B25-976E-715FB6B2A1D1"
            },
            {
              "criteria": "cpe:2.3:a:adobe:flash_player:15.0.0.223:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "BFC91B68-6B35-47BD-BC02-3F836E772CF3"
            },
            {
              "criteria": "cpe:2.3:a:adobe:flash_player:15.0.0.239:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "A3BE6004-C30A-46E2-9F25-785E12BBF640"
            },
            {
              "criteria": "cpe:2.3:a:adobe:flash_player:15.0.0.246:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "CFE8E51F-7A32-41A4-B03A-73E52EB64C04"
            },
            {
              "criteria": "cpe:2.3:a:adobe:flash_player:16.0.0.235:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "3E13E927-A77C-4681-AFDE-A5A14093234D"
            },
            {
              "criteria": "cpe:2.3:a:adobe:flash_player:16.0.0.257:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "27629FF0-5EB9-476F-B5B3-115F663AB65E"
            },
            {
              "criteria": "cpe:2.3:a:adobe:flash_player:16.0.0.287:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "C0AB583F-3EBD-47B6-975E-7754CC32CCA7"
            },
            {
              "criteria": "cpe:2.3:a:adobe:flash_player:16.0.0.296:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "B58DE1A9-0510-4B65-AB18-75F9263A7818"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:apple:mac_os_x:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "4781BF1E-8A4E-4AFF-9540-23D523EE30DD"
            },
            {
              "criteria": "cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "A2572D17-1DE6-457B-99CC-64AFD54487EA"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "evaluatorComment": "<a href=\"http://cwe.mitre.org/data/definitions/476.html\">CWE-476: NULL Pointer Dereference</a>",
  "sourceIdentifier": "psirt@adobe.com"
}