CVE-2018-15978: High severity adobe flash player vulnerability
Adobe Security Bulletin APSB18-39 for Adobe Flash Player describes a flaw that can possibly lead to information disclosure when Flash Player is used to play a specially crafted SWF file:
Out-of-bounds Read -- CVE-2018-15978
External References:
https://helpx.adobe.com/security/products/flash-player/apsb18-39.html
Other sources
Flash Player versions 31.0.0.122 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.
— MITRE
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2018-15978?
CVE-2018-15978 is an out-of-bounds read vulnerability in Flash Player versions 31.0.0.122 and earlier.
What is the severity of CVE-2018-15978?
The severity of CVE-2018-15978 is high, with a severity value of 7.5.
Which software versions are affected by CVE-2018-15978?
Flash Player versions 31.0.0.122 and earlier are affected by CVE-2018-15978.
How can CVE-2018-15978 be exploited?
Successful exploitation of CVE-2018-15978 could lead to information disclosure.
How can I fix CVE-2018-15978?
To fix CVE-2018-15978, update to Flash Player version 31.0.0.148 or later.