CVE-2018-5000: Integer Overflow
Adobe Flash Player versions 29.0.0.171 and earlier have an Integer Overflow vulnerability. Successful exploitation could lead to information disclosure.
Other sources
Adobe Security Bulletin APSB18-19 for Adobe Flash Player describes multiple flaws that can possibly lead to information disclosure when Flash Player is used to play a specially crafted SWF file:
Integer Overflow -- CVE-2018-5000 Out-of-bounds read -- CVE-2018-5001
External References:
https://helpx.adobe.com/security/products/flash-player/apsb18-19.html
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2018-5000?
CVE-2018-5000 is an Integer Overflow vulnerability in Adobe Flash Player versions 29.0.0.171 and earlier.
What is the severity of CVE-2018-5000?
CVE-2018-5000 has a severity rating of 6.5 (High).
How does CVE-2018-5000 affect Adobe Flash Player?
CVE-2018-5000 affects Adobe Flash Player versions 29.0.0.171 and earlier.
How can CVE-2018-5000 be fixed?
To fix CVE-2018-5000, update Adobe Flash Player to version 30.0.0.113 or later.
Where can I find more information about CVE-2018-5000?
You can find more information about CVE-2018-5000 at the following sources: [SecurityFocus](http://www.securityfocus.com/bid/104413), [SecurityTracker](http://www.securitytracker.com/id/1041058), [Red Hat Security Advisory](https://access.redhat.com/errata/RHSA-2018:1827).