Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-083.
References
Link | Resource |
---|---|
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00031.html | Broken Link |
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00035.html | Broken Link |
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00038.html | Broken Link |
http://www.securitytracker.com/id/1036117 | Broken Link Third Party Advisory VDB Entry |
https://access.redhat.com/errata/RHSA-2016:1238 | Third Party Advisory |
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-083 | Patch Third Party Advisory |
https://helpx.adobe.com/security/products/flash-player/apsb16-18.html | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
History
19 Jan 2023, 03:10
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_server:5.0:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_8.1:*:*:*:*:*:*:*:* cpe:2.3:o:google:chrome_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_workstation:5.0:*:*:*:*:*:*:* |
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* cpe:2.3:o:google:chrome_os:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_8.1:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* cpe:2.3:o:apple:mac_os_x:-:*:*:*:*:*:*:* cpe:2.3:a:adobe:flash_player_desktop_runtime:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:* |
CWE | CWE-787 | |
First Time |
Adobe flash Player Desktop Runtime
|
|
CVSS |
v2 : v3 : |
v2 : 9.3
v3 : 8.8 |
References | (CONFIRM) https://helpx.adobe.com/security/products/flash-player/apsb16-18.html - Patch, Vendor Advisory | |
References | (MS) https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-083 - Patch, Third Party Advisory | |
References | (SUSE) http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00035.html - Broken Link | |
References | (SUSE) http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00038.html - Broken Link | |
References | (SECTRACK) http://www.securitytracker.com/id/1036117 - Broken Link, Third Party Advisory, VDB Entry | |
References | (SUSE) http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00031.html - Broken Link |
Information
Published : 2016-06-16 14:59
Updated : 2023-12-10 11:46
NVD link : CVE-2016-4166
Mitre link : CVE-2016-4166
CVE.ORG link : CVE-2016-4166
JSON object : View
Products Affected
microsoft
- windows_10
- windows
- windows_8.1
adobe
- flash_player
- flash_player_desktop_runtime
apple
- mac_os_x
linux
- linux_kernel
- chrome_os
CWE
CWE-787
Out-of-bounds Write