First published: Thu Jun 16 2016(Updated: )
Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-083.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Enterprise Linux Desktop | =5.0 | |
Red Hat Enterprise Linux Desktop | =6.0 | |
Red Hat Enterprise Linux Server | =5.0 | |
Red Hat Enterprise Linux Server | =6.0 | |
Red Hat Enterprise Linux Workstation | =5.0 | |
Red Hat Enterprise Linux Workstation | =6.0 | |
Adobe Flash Player | <=21.0.0.242 | |
Apple iOS and macOS | ||
Microsoft Windows | ||
Macromedia Flash Player | <=11.2.202.621 | |
Linux Kernel | ||
Macromedia Flash Player | <=18.0.0.352 | |
Microsoft Windows 10 | ||
Microsoft Windows 8.1 | ||
Macromedia Flash Player | <=21.0.0.242 | |
Macromedia Flash Player | <=21.0.0.242 | |
Chrome OS | ||
Macromedia Flash Player | <=21.0.0.242 | |
SUSE Linux | =13.1 | |
SUSE Linux | =13.2 | |
SUSE Linux Enterprise Desktop | =12 | |
SUSE Linux Enterprise Desktop | =12-sp1 | |
SUSE Linux Workstation Extension | =12 | |
SUSE Linux Workstation Extension | =12-sp1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2016-4123 is currently unknown due to unspecified impact and attack vectors.
To fix CVE-2016-4123, update Adobe Flash Player to a version greater than 21.0.0.242.
CVE-2016-4123 affects Adobe Flash Player 21.0.0.242 and earlier versions, specifically in the context of Microsoft Internet Explorer 10 and 11, and Microsoft Edge.
No, systems using Adobe Flash Player later than 21.0.0.242 are not vulnerable to CVE-2016-4123.
CVE-2016-4123 primarily affects Adobe Flash Player implementations within certain versions of Microsoft Internet Explorer and Edge, but specific Linux versions may also be impacted.