Adobe Flash Player Remote Code Execution Vulnerability
Last Update Date:
13 May 2016
Release Date:
11 May 2016
4032
Views
RISK: Extremely High Risk
TYPE: Clients - Audio & Video
A vulnerability was identified in Adobe Flash Player. A remote user can cause arbitrary code to be executed on the target user's system.
Note: This vulnerability is being actively exploited in the wild.
Impact
- Remote Code Execution
System / Technologies affected
- Adobe Flash Player Desktop Runtime 21.0.0.226 and earlier
- Adobe Flash Player Extended Support Release 18.0.0.343 and earlier
- Adobe Flash Player for Google Chrome 21.0.0.216 and earlier
- Adobe Flash Player for Microsoft Edge and Internet Explorer 11 21.0.0.213 and earlier
- Adobe Flash Player for Linux 11.2.202.616 and earlier
- AIR Desktop Runtime 21.0.0.198 and earlier
- AIR SDK 21.0.0.198 and earlier
- AIR SDK & Compiler 21.0.0.198 and earlier
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
The vendor has issued patches:
- Adobe Flash Player Desktop Runtime 21.0.0.242
- Adobe Flash Player Extended Support Release 18.0.0.352
- Adobe Flash Player for Google Chrome 21.0.0.242
- Adobe Flash Player for Microsoft Edge and Internet Explorer 11 21.0.0.242
- Adobe Flash Player for Linux 11.2.202.621
- AIR Desktop Runtime 21.0.0.215
- AIR SDK 21.0.0.215
- AIR SDK & Compiler 21.0.0.215
Vulnerability Identifier
- CVE-2016-1096
- CVE-2016-1097
- CVE-2016-1098
- CVE-2016-1099
- CVE-2016-1100
- CVE-2016-1101
- CVE-2016-1102
- CVE-2016-1103
- CVE-2016-1104
- CVE-2016-1105
- CVE-2016-1106
- CVE-2016-1107
- CVE-2016-1108
- CVE-2016-1109
- CVE-2016-1110
- CVE-2016-4108
- CVE-2016-4109
- CVE-2016-4110
- CVE-2016-4111
- CVE-2016-4112
- CVE-2016-4113
- CVE-2016-4114
- CVE-2016-4115
- CVE-2016-4116
- CVE-2016-4117
Source
Related Link
Share with