CISA Known Exploited Vulnerability

CVE-2015-5119

Adobe · Flash Player

Adobe Flash Player Use-After-Free Vulnerability

Date added
BOD 22-01 due date
CWE CWE-119
Ransomware Unknown

CISA description

A use-after-free vulnerability exists within the ActionScript 3 ByteArray class in Adobe Flash Player that allows an attacker to perform remote code execution.

Required action

The impacted product is end-of-life and should be disconnected if still in use.