Netskope Threat Labs

FILE-FLASH Adobe Flash Player ByteArray domainMemory use after free attempt

IPS-SWG

1 SID: 37627

First seen
March 2022
Last seen
October 2026

Detects Flash content exploiting CVE-2015-0311, a use-after-free in Flash Player's shared memory handling that saw active exploitation. The rule matches the domain memory assignment that public exploits use to free the backing buffer while it remains in use.