Use-After-Free Vulnerability in Adobe Flash Player
CVE-2016-4173

8.8HIGH

Key Information:

Vendor

Adobe

Vendor
CVE Published:
13 July 2016

What is CVE-2016-4173?

A use-after-free vulnerability exists in Adobe Flash Player, affecting numerous versions across Windows, OS X, and Linux platforms. This weakness allows attackers to exploit memory management flaws, resulting in potential arbitrary code execution via unspecified vectors. Security updates are essential to mitigate risks associated with this vulnerability. For more information, refer to the vendor advisories.

References

EPSS Score

18% chance of being exploited in the next 30 days.

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.