Adobe Flash Player ByteArray UncompressViaZlibVariant Use-After-Free Exploit

Adobe Flash Player is prone to a use-after-free vulnerability because the ByteArray::UncompressViaZlibVariant method frees an object while leaving a dangling pointer that can be later dereferenced. This vulnerability allows attackers to execute arbitrary code on vulnerable machines by enticing unsuspecting users to visit a website serving a specially crafted SWF Flash file.
Exploit type: 
Platform: 
Vulnerabilty ID: 
CVE-2015-0311
Product Version: 
2014_R2
Released Date: 
Monday, February 23, 2015 - 00:00