CVE-2018-4933: Medium severity macromedia flash player vulnerability
Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.
Other sources
Adobe Security Bulletin APSB18-08 for Adobe Flash Player describes multiple flaws that can possibly lead to information disclosure when Flash Player is used to play a specially crafted SWF file:
Heap Overflow -- CVE-2018-4936 Out-of-bounds read -- CVE-2018-4933, CVE-2018-4934
External References:
https://helpx.adobe.com/security/products/flash-player/apsb18-08.html
— Red Hat
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2018-4933.
What is the severity of CVE-2018-4933?
The severity of CVE-2018-4933 is high (6.5).
Which software versions are affected by CVE-2018-4933?
Adobe Flash Player versions 29.0.0.113 and earlier are affected by CVE-2018-4933.
How can the vulnerability be exploited?
The vulnerability can be exploited through an out-of-bounds read, leading to information disclosure.
How can I fix CVE-2018-4933?
To fix CVE-2018-4933, update Adobe Flash Player to version 29.0.0.140 or later.