CVE-2016-4286: Critical severity macromedia flash player vulnerability
Published Oct 13, 2016
·Updated
Adobe Flash Player before 18.0.0.382 and 19.x through 23.x before 23.0.0.185 on Windows and OS X and before 11.2.202.637 on Linux allows attackers to bypass intended access restrictions via unspecified vectors.
Affected Software
18 affected components
Adobe Flash Player Edge<=23.0.0.162
Adobe Flash Player Internet Explorer<=23.0.0.162
Microsoft Windows 10
Microsoft Windows 8.1
Adobe Flash Player Linux<=11.2.202.635
Linux Linux kernel
Adobe Flash Player<=18.0.0.375
Adobe Flash Player Desktop Runtime<=23.0.0.162
Apple iOS and macOS
Microsoft Windows
Adobe Flash Player Chrome<=23.0.0.162
Google Chrome OS
redhat Enterprise Linux Desktop=5.0
redhat Enterprise Linux Desktop=6.0
redhat Enterprise Linux Server=5.0
redhat Enterprise Linux Server=6.0
redhat Enterprise Linux Workstation=5.0
redhat Enterprise Linux Workstation=6.0
Remediation
Event History
Oct 13, 2016
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-4286?
CVE-2016-4286 is classified as a critical vulnerability due to its potential to bypass access restrictions.
2
How do I fix CVE-2016-4286?
To remediate CVE-2016-4286, update Adobe Flash Player to version 23.0.0.185 or later.
3
What products are affected by CVE-2016-4286?
CVE-2016-4286 affects Adobe Flash Player versions prior to 23.0.0.185 across Windows, OS X, and Linux platforms.
4
Can CVE-2016-4286 be exploited remotely?
Yes, CVE-2016-4286 can potentially be exploited remotely, allowing attackers to gain unauthorized access.
5
Is there a workaround for CVE-2016-4286?
There are no specific workarounds for CVE-2016-4286; the best approach is to apply the necessary updates.