CVE-2016-0962

Description

Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0960, CVE-2016-0961, CVE-2016-0986, CVE-2016-0989, CVE-2016-0992, CVE-2016-1002, and CVE-2016-1005.

Risk Information

Base Score
8.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
4.963

Associated Vulnerability

VulnerabilityOS Platform
Upgrade Adobe flash player 20.0.0.306 to latest versionWindows
Upgrade air 20.0.0.260 to latest versionWindows
Multiple vulnerabilities affected in Adobe Flash Player Plugin 20.0.0.306Windows
Multiple vulnerabilities affected in Adobe Flash Player PPAPI 20.0.0.306Windows
Multiple Vulnerabilities are affected in Adobe AIR For Mac 20.0.0.260Mac
Multiple Vulnerabilities are affected in Adobe AIR For Mac 20.0.0.233Mac
SUSE-SU-2016:0716-1(SUSE Linux Enterprise Desktop 11-SP4 ) flash-player-11.2.202.577-0.38.1.x86_64.rpmLinux
SUSE-SU-2016:0716-1(SUSE Linux Enterprise Desktop 11-SP4 ) flash-player-gnome-11.2.202.577-0.38.1.x86_64.rpmLinux
SUSE-SU-2016:0716-1(SUSE Linux Enterprise Desktop 11-SP4 ) flash-player-kde4-11.2.202.577-0.38.1.x86_64.rpmLinux

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)
PATCH-601945Update for Adobe AIR For Mac (32.0.0.125) (Deployment-Only)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234