CVE-2016-0971: Buffer Overflow
Heap-based buffer overflow in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allows attackers to execute arbitrary code via unspecified vectors.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2016-0971?
CVE-2016-0971 has a critical severity rating due to the potential for remote code execution.
How do I fix CVE-2016-0971?
To fix CVE-2016-0971, update Adobe Flash Player to version 20.0.0.306 or later.
Which versions of Adobe Flash Player are affected by CVE-2016-0971?
CVE-2016-0971 affects Adobe Flash Player versions prior to 18.0.0.329, 19.x, and 20.x before 20.0.0.306.
What types of systems are vulnerable to CVE-2016-0971?
CVE-2016-0971 impacts Windows, macOS, and Linux systems running vulnerable versions of Adobe Flash Player.
Can CVE-2016-0971 be exploited remotely?
Yes, CVE-2016-0971 can be exploited remotely by attackers to execute arbitrary code.