Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before 11.2.202.466 on Linux, Adobe AIR before 18.0.0.144 on Windows and before 18.0.0.143 on OS X and Android, Adobe AIR SDK before 18.0.0.144 on Windows and before 18.0.0.143 on OS X, and Adobe AIR SDK & Compiler before 18.0.0.144 on Windows and before 18.0.0.143 on OS X do not properly restrict discovery of memory addresses, which allows attackers to bypass the ASLR protection mechanism via unspecified vectors.
                
            References
                    Configurations
                    Configuration 1 (hide)
| AND | 
 
 | 
Configuration 2 (hide)
| AND | 
 
 | 
Configuration 3 (hide)
| AND | 
 
 | 
Configuration 4 (hide)
| AND | 
 
 | 
History
                    No history.
Information
                Published : 2015-06-10 01:59
Updated : 2025-04-12 10:46
NVD link : CVE-2015-3108
Mitre link : CVE-2015-3108
CVE.ORG link : CVE-2015-3108
JSON object : View
Products Affected
                - android
adobe
- air_sdk_\&_compiler
- flash_player
- air_sdk
- air
apple
- mac_os_x
microsoft
- windows
linux
- linux_kernel
CWE
                
                    
                        
                        CWE-200
                        
            Exposure of Sensitive Information to an Unauthorized Actor
