CVE-2015-8651

Integer overflow in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors.
References
Link Resource
http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00045.html Mailing List Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00046.html Mailing List Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00047.html Mailing List Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00048.html Mailing List Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2015-2697.html Third Party Advisory
http://www.securityfocus.com/bid/79705 Broken Link Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1034544 Broken Link Third Party Advisory VDB Entry
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05356388 Third Party Advisory
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05385680 Third Party Advisory
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05390722 Third Party Advisory
https://helpx.adobe.com/security/products/flash-player/apsb16-01.html Not Applicable Patch Vendor Advisory
https://security.gentoo.org/glsa/201601-03 Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00045.html Mailing List Third Party Advisory
https://security.gentoo.org/glsa/201601-03 Third Party Advisory
https://helpx.adobe.com/security/products/flash-player/apsb16-01.html Not Applicable Patch Vendor Advisory
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05390722 Third Party Advisory
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05385680 Third Party Advisory
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05356388 Third Party Advisory
http://www.securitytracker.com/id/1034544 Broken Link Third Party Advisory VDB Entry
http://www.securityfocus.com/bid/79705 Broken Link Third Party Advisory VDB Entry
http://rhn.redhat.com/errata/RHSA-2015-2697.html Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00048.html Mailing List Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00047.html Mailing List Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00046.html Mailing List Third Party Advisory
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:adobe:air_sdk:*:*:*:*:*:*:*:*
cpe:2.3:a:adobe:air_sdk_\&_compiler:*:*:*:*:*:*:*:*
OR cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*
cpe:2.3:o:google:android:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:a:adobe:air:*:*:*:*:*:*:*:*
OR cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*
cpe:2.3:o:google:android:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
OR cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*
OR cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*

Configuration 5 (hide)

OR cpe:2.3:o:redhat:enterprise_linux_server:5.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:5.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_desktop:5.0:*:*:*:*:*:*:*

Configuration 6 (hide)

OR cpe:2.3:o:suse:linux_enterprise_desktop:11:sp3:*:*:*:*:*:*
cpe:2.3:o:opensuse:evergreen:11.4:*:*:*:*:*:*:*
cpe:2.3:o:suse:linux_enterprise_desktop:11:sp4:*:*:*:*:*:*
cpe:2.3:o:suse:linux_enterprise_workstation_extension:12:sp1:*:*:*:*:*:*
cpe:2.3:o:suse:linux_enterprise_desktop:12:sp1:*:*:*:*:*:*
cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:*
cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*
cpe:2.3:o:suse:linux_enterprise_desktop:12:-:*:*:*:*:*:*
cpe:2.3:o:suse:linux_enterprise_workstation_extension:12:-:*:*:*:*:*:*

Configuration 7 (hide)

OR cpe:2.3:a:hp:matrix_operating_environment:7.6:*:*:*:*:*:*:*
cpe:2.3:a:hp:systems_insight_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:hp:version_control_repository_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:hp:insight_control_server_provisioning:*:*:*:*:*:*:*:*
cpe:2.3:a:hp:insight_control:*:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:*:*:*:*:*:*:*:*

History

23 Jan 2025, 17:42

Type Values Removed Values Added
References (CONFIRM) https://helpx.adobe.com/security/products/flash-player/apsb16-01.html - Not Applicable, Patch, Vendor Advisory () https://helpx.adobe.com/security/products/flash-player/apsb16-01.html - Not Applicable, Patch, Vendor Advisory
References (CONFIRM) https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05385680 - Third Party Advisory () https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05385680 - Third Party Advisory
References (SECTRACK) http://www.securitytracker.com/id/1034544 - Broken Link, Third Party Advisory, VDB Entry () http://www.securitytracker.com/id/1034544 - Broken Link, Third Party Advisory, VDB Entry
References (SUSE) http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00046.html - Mailing List, Third Party Advisory () http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00046.html - Mailing List, Third Party Advisory
References (CONFIRM) https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05356388 - Third Party Advisory () https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05356388 - Third Party Advisory
References (SUSE) http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00047.html - Mailing List, Third Party Advisory () http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00047.html - Mailing List, Third Party Advisory
References (SUSE) http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00048.html - Mailing List, Third Party Advisory () http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00048.html - Mailing List, Third Party Advisory
References (GENTOO) https://security.gentoo.org/glsa/201601-03 - Third Party Advisory () https://security.gentoo.org/glsa/201601-03 - Third Party Advisory
References (BID) http://www.securityfocus.com/bid/79705 - Broken Link, Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/79705 - Broken Link, Third Party Advisory, VDB Entry
References (REDHAT) http://rhn.redhat.com/errata/RHSA-2015-2697.html - Third Party Advisory () http://rhn.redhat.com/errata/RHSA-2015-2697.html - Third Party Advisory
References (SUSE) http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00045.html - Mailing List, Third Party Advisory () http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00045.html - Mailing List, Third Party Advisory
References (CONFIRM) https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05390722 - Third Party Advisory () https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05390722 - Third Party Advisory

01 Jul 2024, 17:43

Type Values Removed Values Added
References (REDHAT) http://rhn.redhat.com/errata/RHSA-2015-2697.html - (REDHAT) http://rhn.redhat.com/errata/RHSA-2015-2697.html - Third Party Advisory
References (SUSE) http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00047.html - (SUSE) http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00047.html - Mailing List, Third Party Advisory
References (SECTRACK) http://www.securitytracker.com/id/1034544 - (SECTRACK) http://www.securitytracker.com/id/1034544 - Broken Link, Third Party Advisory, VDB Entry
References (SUSE) http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00046.html - (SUSE) http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00046.html - Mailing List, Third Party Advisory
References (CONFIRM) https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05356388 - (CONFIRM) https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05356388 - Third Party Advisory
References (BID) http://www.securityfocus.com/bid/79705 - (BID) http://www.securityfocus.com/bid/79705 - Broken Link, Third Party Advisory, VDB Entry
References (CONFIRM) https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05390722 - (CONFIRM) https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05390722 - Third Party Advisory
References (SUSE) http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00045.html - (SUSE) http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00045.html - Mailing List, Third Party Advisory
References (CONFIRM) https://helpx.adobe.com/security/products/flash-player/apsb16-01.html - Patch, Vendor Advisory (CONFIRM) https://helpx.adobe.com/security/products/flash-player/apsb16-01.html - Not Applicable, Patch, Vendor Advisory
References (CONFIRM) https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05385680 - (CONFIRM) https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05385680 - Third Party Advisory
References (GENTOO) https://security.gentoo.org/glsa/201601-03 - (GENTOO) https://security.gentoo.org/glsa/201601-03 - Third Party Advisory
References (SUSE) http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00048.html - (SUSE) http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00048.html - Mailing List, Third Party Advisory
First Time Hp system Management Homepage
Redhat enterprise Linux Desktop
Hp insight Control
Opensuse opensuse
Suse linux Enterprise Desktop
Suse linux Enterprise Workstation Extension
Redhat enterprise Linux Workstation
Hp version Control Repository Manager
Opensuse
Hp insight Control Server Provisioning
Hp systems Insight Manager
Opensuse evergreen
Hp matrix Operating Environment
Redhat enterprise Linux Server
Suse
Hp
Redhat
CWE CWE-189 CWE-190
CPE cpe:2.3:a:adobe:flash_player:19.0.0.226:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:20.0.0.235:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:20.0.0.228:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:19.0.0.207:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:19.0.0.245:*:*:*:*:*:*:*
cpe:2.3:a:adobe:flash_player:19.0.0.185:*:*:*:*:*:*:*
cpe:2.3:o:suse:linux_enterprise_desktop:12:-:*:*:*:*:*:*
cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*
cpe:2.3:o:suse:linux_enterprise_desktop:11:sp4:*:*:*:*:*:*
cpe:2.3:a:hp:systems_insight_manager:*:*:*:*:*:*:*:*
cpe:2.3:o:suse:linux_enterprise_desktop:11:sp3:*:*:*:*:*:*
cpe:2.3:o:suse:linux_enterprise_workstation_extension:12:-:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:*:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*
cpe:2.3:a:hp:version_control_repository_manager:*:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*
cpe:2.3:a:hp:insight_control:*:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_desktop:5.0:*:*:*:*:*:*:*
cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:*
cpe:2.3:o:suse:linux_enterprise_workstation_extension:12:sp1:*:*:*:*:*:*
cpe:2.3:o:suse:linux_enterprise_desktop:12:sp1:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*
cpe:2.3:a:hp:matrix_operating_environment:7.6:*:*:*:*:*:*:*
cpe:2.3:o:opensuse:evergreen:11.4:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:5.0:*:*:*:*:*:*:*
cpe:2.3:a:hp:insight_control_server_provisioning:*:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:5.0:*:*:*:*:*:*:*

Information

Published : 2015-12-28 23:59

Updated : 2025-02-14 16:15


NVD link : CVE-2015-8651

Mitre link : CVE-2015-8651


JSON object : View

Products Affected

redhat

  • enterprise_linux_desktop
  • enterprise_linux_server
  • enterprise_linux_workstation

adobe

  • flash_player
  • air_sdk_\&_compiler
  • air_sdk
  • air

hp

  • insight_control_server_provisioning
  • matrix_operating_environment
  • insight_control
  • systems_insight_manager
  • system_management_homepage
  • version_control_repository_manager

microsoft

  • windows

linux

  • linux_kernel

suse

  • linux_enterprise_desktop
  • linux_enterprise_workstation_extension

opensuse

  • evergreen
  • opensuse

apple

  • mac_os_x
  • iphone_os

google

  • android
CWE
CWE-190

Integer Overflow or Wraparound