First published: Thu Jun 16 2016(Updated: )
Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-083.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Flash Player | <=21.0.0.242 | |
Apple iOS and macOS | ||
Microsoft Windows Operating System | ||
Macromedia Flash Player | <=11.2.202.621 | |
Linux Kernel | ||
Macromedia Flash Player | <=18.0.0.352 | |
Windows 10 | ||
Microsoft Windows | ||
Macromedia Flash Player | <=21.0.0.242 | |
Macromedia Flash Player | <=21.0.0.242 | |
Chrome OS | ||
Macromedia Flash Player | <=21.0.0.242 | |
Red Hat Enterprise Linux Desktop | =5.0 | |
Red Hat Enterprise Linux Desktop | =6.0 | |
Red Hat Enterprise Linux Server | =5.0 | |
Red Hat Enterprise Linux Server | =6.0 | |
Red Hat Enterprise Linux Workstation | =5.0 | |
Red Hat Enterprise Linux Workstation | =6.0 | |
openSUSE | =13.1 | |
openSUSE | =13.2 | |
SUSE Linux Enterprise Desktop | =12 | |
SUSE Linux Enterprise Desktop | =12-sp1 | |
SUSE Linux Workstation Extension | =12 | |
SUSE Linux Workstation Extension | =12-sp1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2016-4149 is currently unspecified due to the lack of detailed information regarding its impact and attack vectors.
To fix CVE-2016-4149, users should update Adobe Flash Player to version 21.0.0.243 or later.
CVE-2016-4149 affects Adobe Flash Player versions up to 21.0.0.242.
As of now, it is unclear if CVE-2016-4149 is actively exploited in the wild due to the unspecified nature of the vulnerability.
CVE-2016-4149 impacts Adobe Flash Player used in Microsoft Internet Explorer 10 and 11 and Microsoft Edge on supported Windows operating systems.