ZeroHour

CVE-2018-4871

CVSS 3.0
7.5 high
EPSS
6%p92
Published
()
Modified
Description

An Out-of-bounds Read issue was discovered in Adobe Flash Player before 28.0.0.137. This vulnerability occurs because of computation that reads data that is past the end of the target buffer. The use of an invalid (out-of-range) pointer offset during access of internal data structure fields causes the vulnerability. A successful attack can lead to sensitive data exposure.

Vendors
redhatadobe
Products
enterprise linux desktop, enterprise linux server, enterprise linux workstation, flash player
Weakness
CWE-125
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news