CVE-2016-7877
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD
Description
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability in the Action Message Format serialization (AFM0). Successful exploitation could lead to arbitrary code execution.
Affected (5)
Products: Adobe: Flash Player Desktop Runtime, Flash Player
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 23.0.0.207 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 23.0.0.207 |
| Running on/with | Platform Versions |
|---|---|
Microsoft Windows 10 | All versions |
Microsoft Windows 8.1 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 23.0.0.207 |
| Running on/with | Platform Versions |
|---|---|
Apple Mac Os X | All versions |
Google Chrome Os | All versions |
Microsoft Windows | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 11.2.202.644 |
| Running on/with | Platform Versions |
|---|---|
Linux Linux Kernel | All versions |
References (16)
Source: psirt@adobe.com
Broken Link
Source: psirt@adobe.com
Broken LinkThird Party AdvisoryVDB Entry
Source: psirt@adobe.com
PatchThird Party Advisory
Source: psirt@adobe.com
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Timeline
No history available yet.