First published: Wed Sep 14 2016(Updated: )
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.375 and 19.x through 23.x before 23.0.0.162 on Windows and OS X and before 11.2.202.635 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-4272, CVE-2016-4279, CVE-2016-6921, CVE-2016-6925, CVE-2016-6926, CVE-2016-6927, CVE-2016-6929, CVE-2016-6930, CVE-2016-6931, and CVE-2016-6932.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Macromedia Flash Player | <=11.2.202.632 | |
Linux Kernel | ||
Windows 10 | ||
Microsoft Windows | ||
Macromedia Flash Player | <=22.0.0.211 | |
Macromedia Flash Player | <=22.0.0.211 | |
Apple iOS and macOS | ||
Microsoft Windows Operating System | ||
Adobe Flash Player | <=22.0.0.211 | |
Macromedia Flash Player | <=18.0.0.366 | |
Macromedia Flash Player | <=22.0.0.211 | |
Chrome OS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-6923 is considered critical due to its potential to allow attackers to execute arbitrary code.
To fix CVE-2016-6923, update Adobe Flash Player to the latest version that is not affected by this vulnerability.
Adobe Flash Player versions before 18.0.0.375, 19.x through 23.x before 23.0.0.162, and 11.2.202.635 on Linux are affected by CVE-2016-6923.
CVE-2016-6923 impacts multiple products including Adobe Flash Player for various browsers and platforms like Windows, macOS, and Linux.
Yes, CVE-2016-6923 can potentially lead to data breaches as it may allow attackers to execute arbitrary code on affected systems.