CVE-2016-4232: High severity adobe flash player vulnerability
Published Jul 13, 2016
·Updated
Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X and before 11.2.202.632 on Linux allows attackers to obtain sensitive information from process memory via unspecified vectors.
Affected Software
12 affected components
Adobe Flash Player Desktop Runtime<=22.0.0.192
Apple iOS and macOS
Microsoft Windows
Adobe Flash Player<=18.0.0.360
Adobe Flash Player Chrome<=22.0.0.192
Google Chrome OS
Linux Linux kernel
Adobe Flash Player Edge<=22.0.0.192
Adobe Flash Player Internet Explorer<=22.0.0.192
Microsoft Windows 10
Microsoft Windows 8.1
Adobe Flash Player<=11.2.202.626
Remediation
Event History
Jul 13, 2016
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-4232?
CVE-2016-4232 has been classified as a moderate severity vulnerability due to its ability to expose sensitive information.
2
How do I fix CVE-2016-4232?
To fix CVE-2016-4232, update Adobe Flash Player to version 22.0.0.209 or later.
3
Which versions of Adobe Flash Player are affected by CVE-2016-4232?
CVE-2016-4232 affects Adobe Flash Player versions prior to 18.0.0.366 and 19.x through 22.x before 22.0.0.209.
4
What can attackers do with CVE-2016-4232?
Attackers can exploit CVE-2016-4232 to obtain sensitive information from the process memory of affected systems.
5
Is Adobe Flash Player for Linux vulnerable to CVE-2016-4232?
Yes, Adobe Flash Player for Linux versions prior to 11.2.202.632 are vulnerable to CVE-2016-4232.