CVE-2016-1030: High severity macromedia flash player vulnerability
Published Apr 9, 2016
·Updated
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to bypass intended access restrictions via unspecified vectors.
Affected Software
17 affected components
Adobe Flash Player<=11.2.202.577
Linux Linux kernel
Adobe Flash Player Desktop Runtime<=21.0.0.197
Apple iOS and macOS
Microsoft Windows
Adobe Flash Player<=18.0.0.333
Microsoft Windows 10
Microsoft Windows 8.1
Adobe Flash Player Internet Explorer<=21.0.0.197
Adobe Flash Player Chrome<=21.0.0.197
Google Chrome OS
Adobe Flash Player Edge<=21.0.0.197
Adobe Air Desktop Runtime<=21.0.0.176
Adobe AIR SDK<=21.0.0.176
Apple iPhone OS
Google Android
Adobe Air Sdk \& Compiler<=21.0.0.176
Remediation
Event History
Apr 9, 2016
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-1030?
CVE-2016-1030 is rated as a critical vulnerability allowing attackers to bypass access restrictions.
2
How do I fix CVE-2016-1030?
To mitigate CVE-2016-1030, upgrade Adobe Flash Player to version 21.0.0.213 or later.
3
What products are affected by CVE-2016-1030?
CVE-2016-1030 affects Adobe Flash Player versions before 18.0.0.343 on Windows and OS X, and versions before 11.2.202.616 on Linux.
4
Is CVE-2016-1030 exploitable remotely?
Yes, CVE-2016-1030 can be exploited remotely without user interaction.
5
What are the potential impacts of CVE-2016-1030?
Exploitation of CVE-2016-1030 can lead to unauthorized access and control over affected systems.