CVE-2018-15983: High severity macromedia flash player vulnerability
Published Jan 18, 2019
·Updated
Flash Player versions 31.0.0.153 and earlier, and 31.0.0.108 and earlier have an insecure library loading (dll hijacking) vulnerability. Successful exploitation could lead to privilege escalation.
Affected Software
10 affected components
Adobe Flash Player<=31.0.0.153
Apple iOS and macOS
Linux Linux kernel
Microsoft Windows
Adobe Flash Player Chrome<=31.0.0.153
Google Chrome OS
Adobe Flash Player Edge<=31.0.0.153
Adobe Flash Player Internet Explorer 11<=31.0.0.153
Microsoft Windows 10
Microsoft Windows 8.1
Remediation
Event History
Jan 18, 2019
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this Flash Player vulnerability?
The vulnerability ID for this Flash Player vulnerability is CVE-2018-15983.
2
What is the severity of CVE-2018-15983?
The severity of CVE-2018-15983 is high with a score of 7.8.
3
Which versions of Flash Player are affected by CVE-2018-15983?
Flash Player versions 31.0.0.153 and earlier, as well as 31.0.0.108 and earlier, are affected by CVE-2018-15983.
4
What is the impact of successful exploitation of CVE-2018-15983?
Successful exploitation of CVE-2018-15983 could lead to privilege escalation.
5
How can I fix CVE-2018-15983?
To fix CVE-2018-15983, update Flash Player to version 32.0.0.192 or later, as mentioned in the Adobe security advisory APSB18-42.