Adobe Flash Player versions 23.0.0.205 and earlier, 11.2.202.643 and earlier have an exploitable type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.
CVSS Details
- CVSS 3.1 Base Score: 8.8
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Flash_player | — | adobe-flash-upgrade-11-2-202-644-linuxadobe-flash-upgrade-23-0-0-207-macosxadobe-flash-upgrade-23-0-0-207-windows | Nov 8, 2016 | Nov 8, 2016 |
| Freebsd | freebsd-upgrade-package-linux-c6-flashpluginfreebsd-upgrade-package-linux-c7-flashpluginfreebsd-upgrade-package-linux-f10-flashplugin | Nov 14, 2016 | Nov 10, 2016 | |
| Gentoo Linux | gentoo-linux-upgrade-www-plugins-adobe-flash | Oct 30, 2017 | Nov 8, 2016 | |
| Redhat_linux | — | redhat-upgrade-flash-plugin | Nov 9, 2016 | Nov 8, 2016 |
| Suse | — | suse-upgrade-flash-playersuse-upgrade-flash-player-gnome | Nov 13, 2016 | Nov 8, 2016 |
| Ubuntu | ubuntu-upgrade-adobe-flashpluginubuntu-upgrade-flashplugin-nonfree | Nov 19, 2024 | Nov 8, 2016 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub