February 2018 Adobe Flash Security Update2018-02 Security Update for Adobe Flash Player for Windows 8.1 for x86-based Systems (KB4074595)

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
93.305%

CVE Information

Patch Details

Patch associated with this vulnerability is supported by ManageEngine.

Patch ID
23809

Patch Description
2018-02 Security Update for Adobe Flash Player for Windows 8.1 for x86-based Systems (KB4074595)

References

http://blog.talosintelligence.com/2018/02/group-123-goes-wild.html
http://www.securityfocus.com/bid/102893
http://www.securityfocus.com/bid/102930
http://www.securitytracker.com/id/1040318
https://access.redhat.com/errata/RHSA-2018:0285
https://github.com/InQuest/malware-samples/tree/master/CVE-2018-4878-Adobe-Flash-DRM-UAF-0day
https://github.com/vysec/CVE-2018-4878
https://helpx.adobe.com/security/products/flash-player/apsb18-03.html
https://threatpost.com/adobe-flash-player-zero-day-spotted-in-the-wild/129742/
https://www.fireeye.com/blog/threat-research/2018/02/attacks-leveraging-adobe-zero-day.html
https://www.trendmicro.com/vinfo/us/security/news/vulnerabilities-and-exploits/north-korean-hackers-allegedly-exploit-adobe-flash-player-vulnerability-cve-2018-4878-against-south-korean-targets
https://msrc.microsoft.com/update-guide/vulnerability/ADV180004