CVE-2016-7869: Buffer Overflow
Published Dec 15, 2016
·Updated
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable buffer overflow / underflow vulnerability in the RegExp class related to backtrack search functionality. Successful exploitation could lead to arbitrary code execution.
Affected Software
11 affected components
Adobe Flash Player Desktop Runtime<=23.0.0.207
Apple iOS and macOS
Microsoft Windows
Adobe Flash Player Edge<=23.0.0.207
Adobe Flash Player Internet Explorer<=23.0.0.207
Microsoft Windows 10
Microsoft Windows 8.1
Adobe Flash Player Chrome<=23.0.0.207
Google Chrome OS
Linux Linux kernel
Adobe Flash Player<=11.2.202.644
Remediation
Event History
Dec 15, 2016
CVE Published
via MITRE·06:31 AM
Data Sourced
via MITRE·06:31 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2016-7869?
CVE-2016-7869 has a high severity rating due to its potential for arbitrary code execution.
2
How do I fix CVE-2016-7869?
To fix CVE-2016-7869, update Adobe Flash Player to version 23.0.0.208 or later.
3
Which Adobe Flash Player versions are affected by CVE-2016-7869?
CVE-2016-7869 affects Adobe Flash Player versions 23.0.0.207 and earlier as well as 11.2.202.644 and earlier.
4
What can attackers achieve by exploiting CVE-2016-7869?
Exploiting CVE-2016-7869 may allow attackers to execute arbitrary code on the affected system.
5
Is CVE-2016-7869 relevant to all users of Adobe Flash Player?
Yes, any user running the affected versions of Adobe Flash Player is at risk from CVE-2016-7869.