CVE-2016-4240: Critical severity adobe flash player vulnerability
Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X and before 11.2.202.632 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4172, CVE-2016-4175, CVE-2016-4179, CVE-2016-4180, CVE-2016-4181, CVE-2016-4182, CVE-2016-4183, CVE-2016-4184, CVE-2016-4185, CVE-2016-4186, CVE-2016-4187, CVE-2016-4188, CVE-2016-4189, CVE-2016-4190, CVE-2016-4217, CVE-2016-4218, CVE-2016-4219, CVE-2016-4220, CVE-2016-4221, CVE-2016-4233, CVE-2016-4234, CVE-2016-4235, CVE-2016-4236, CVE-2016-4237, CVE-2016-4238, CVE-2016-4239, CVE-2016-4241, CVE-2016-4242, CVE-2016-4243, CVE-2016-4244, CVE-2016-4245, and CVE-2016-4246.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2016-4240?
CVE-2016-4240 has been classified as critical due to its potential to allow remote attackers to execute arbitrary code or cause memory corruption.
How do I fix CVE-2016-4240?
To fix CVE-2016-4240, users should update Adobe Flash Player to version 22.0.0.209 or later.
What are the affected systems for CVE-2016-4240?
CVE-2016-4240 affects Adobe Flash Player versions prior to 18.0.0.366 and versions 19.x through 22.x before 22.0.0.209 on Windows, OS X, and Linux.
Can CVE-2016-4240 lead to denial of service?
Yes, CVE-2016-4240 can lead to denial of service through memory corruption.
Is Adobe Flash Player for Internet Explorer 11 vulnerable to CVE-2016-4240?
Yes, Adobe Flash Player for Internet Explorer 11 versions below 22.0.0.209 are vulnerable to CVE-2016-4240.