CISA Known Exploited Vulnerability

CVE-2015-0310

Adobe · Flash Player

Adobe Flash Player ASLR Bypass Vulnerability

Date added
BOD 22-01 due date
CWE CWE-264
Ransomware Unknown

CISA description

Adobe Flash Player does not properly restrict discovery of memory addresses, which allows attackers to bypass the address space layout randomization (ASLR) protection mechanism.

Required action

The impacted product is end-of-life and should be disconnected if still in use.