CVE-2016-1018

Description

Stack-based buffer overflow in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code via crafted JPEG-XR data.

Risk Information

Base Score
8.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
11.651

Associated Vulnerability

VulnerabilityOS Platform
Security Update for Adobe Flash Player for Windows Server 2012 (KB3154132)Windows
Security Update for Adobe Flash Player for Windows Server 2012 R2 (KB3154132)Windows
Security Update for Adobe Flash Player for Windows 8.1 for x64-based Systems (KB3154132)Windows
Security Update for Adobe Flash Player for Windows 8.1 (KB3154132)Windows
Security Update for Adobe Flash Player for Windows 10 Version 1511 for x64-based Systems (KB3154132)Windows
Security Update for Adobe Flash Player for Windows 10 Version 1511 (KB3154132)Windows
Security Update for Adobe Flash Player for Windows 10 (KB3154132) x64 bases systemsWindows
Security Update for Adobe Flash Player for Windows 10 (KB3154132) x86 based systemsWindows
Upgrade Adobe flash player 21.0.0.97 to latest versionWindows
Multiple vulnerabilities affected in Adobe Flash Player Plugin 21.0.0.97Windows
Multiple vulnerabilities affected in Adobe Flash Player PPAPI 21.0.0.97Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-20477Security Update for Adobe Flash Player for Windows Server 2012 (KB3154132)
PATCH-20479Security Update for Adobe Flash Player for Windows Server 2012 R2 (KB3154132)
PATCH-20478Security Update for Adobe Flash Player for Windows 8.1 for x64-based Systems (KB3154132)
PATCH-20476Security Update for Adobe Flash Player for Windows 8.1 (KB3154132)
PATCH-20496Security Update for Adobe Flash Player for Windows 10 Version 1511 for x64-based Systems (KB3154132)
PATCH-20495Security Update for Adobe Flash Player for Windows 10 Version 1511 (KB3154132)
PATCH-20494Security Update for Adobe Flash Player for Windows 10 (KB3154132)
PATCH-20480Security Update for Adobe Flash Player for Windows 10 (KB3154132)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234