PT-2018-3329 · Adobe+2 · Flash Player+2

Smgorelik

·

Published

2018-11-14

·

Updated

2026-05-11

·

CVE-2018-15982

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Adobe Flash Player versions 31.0.0.153 and earlier Adobe Flash Player versions 31.0.0.108 and earlier
Description: The issue is related to a use-after-free vulnerability in Adobe Flash Player. Successful exploitation could lead to arbitrary code execution. This vulnerability allows attackers to execute arbitrary code. There is an instance where an exploit was found, indicating real-world exploitation.
Recommendations: For Adobe Flash Player versions 31.0.0.153 and earlier, update to a version later than 31.0.0.153 to resolve the issue. For Adobe Flash Player versions 31.0.0.108 and earlier, update to a version later than 31.0.0.108 to resolve the issue. As a temporary workaround, consider disabling the use of Adobe Flash Player until a patch is available.

Exploit

Fix

Use After Free

Weakness Enumeration

Related Identifiers

ALT-PU-2019-1042
BDU:2019-04832
CVE-2018-15982
MGASA-2018-0478
RHSA-2018:3795
RHSA-2018_3618
RHSA-2018_3644
RHSA-2018_3795

Affected Products

Alt Linux
Flash Player
Red Hat