PT-2016-7402 · Adobe+3 · Flash Player+3

Bo13Oy

·

Published

2016-11-08

·

Updated

2019-05-16

·

CVE-2016-7857

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Adobe Flash Player versions 23.0.0.205 and earlier Adobe Flash Player versions 11.2.202.643 and earlier
Description The issue is related to a use-after-free vulnerability that could lead to arbitrary code execution if successfully exploited. This vulnerability allows attackers to execute arbitrary code.
Recommendations For Adobe Flash Player versions 23.0.0.205 and earlier, update to a version later than 23.0.0.205 to resolve the issue. For Adobe Flash Player versions 11.2.202.643 and earlier, update to a version later than 11.2.202.643 to resolve the issue. As a temporary workaround, consider disabling the use of Adobe Flash Player until a patch is available.

Fix

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2016-2264
ALT-PU-2016-2266
CVE-2016-7857
MGASA-2016-0370
OPENSUSE-SU-2016_2774-1
OPENSUSE-SU-2016_2782-1
RHSA-2016:2676
RHSA-2016_2676
SUSE-SU-2016:2778-1
SUSE-SU-2016_2778-1
ZDI-16-596

Affected Products

Alt Linux
Flash Player
Red Hat
Suse