Race condition in Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X and before 11.2.202.632 on Linux allows attackers to obtain sensitive information via unspecified vectors.
CVSS Details
- CVSS 3.1 Base Score: 5.3
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Flash_player | — | Upgrade to Adobe Flash version 11.2.202.632 for LinuxUpgrade to Adobe Flash version 22.0.0.209 for WindowsUpgrade to Adobe Flash version 18.0.0.366 for Mac OS XUpgrade to Adobe Flash version 18.0.0.366 for WindowsUpgrade to Adobe Flash version 22.0.0.209 for Mac OS X | Jul 12, 2016 | Jul 12, 2016 |
| Freebsd | — | Upgrade linux-c6-flashpluginUpgrade linux-f10-flashpluginUpgrade linux-c6_64-flashplugin | Dec 10, 2025 | Jul 16, 2016 |
| Gentoo Linux | — | Upgrade www-plugins/adobe-flash. | Oct 30, 2017 | Jul 12, 2016 |
| Redhat_linux | — | Upgrade flash-plugin | Jul 29, 2016 | Jul 12, 2016 |
| Suse | — | Upgrade flash-player-gnomeUpgrade flash-player | Jul 26, 2016 | Jul 12, 2016 |
| Ubuntu | — | Upgrade adobe-flashpluginUpgrade flashplugin-nonfree | Nov 19, 2024 | Jul 13, 2016 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub