CVE-2018-5001: Medium severity adobe flash player vulnerability
Published Jul 9, 2018
·Updated
Adobe Flash Player versions 29.0.0.171 and earlier have an Out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.
Affected Software
13 affected components
Adobe Flash Player Desktop Runtime<=29.0.0.171
Apple iOS and macOS
Linux Linux kernel
Microsoft Windows
Adobe Flash Player Chrome<=29.0.0.171
Google Chrome OS
Adobe Flash Player Edge<=29.0.0.171
Adobe Flash Player Internet Explorer 11<=29.0.0.171
Microsoft Windows 10
Microsoft Windows 8.1
redhat Enterprise Linux Desktop=6.0
redhat Enterprise Linux Server=6.0
redhat Enterprise Linux Workstation=6.0
Remediation
Event History
Jul 9, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2018-5001?
CVE-2018-5001 is a vulnerability in Adobe Flash Player versions 29.0.0.171 and earlier that allows for an out-of-bounds read, potentially leading to information disclosure.
2
What is the severity of CVE-2018-5001?
CVE-2018-5001 has a severity value of 6.5, which is considered medium.
3
How can CVE-2018-5001 be exploited?
CVE-2018-5001 can be exploited by leveraging the out-of-bounds read vulnerability in Adobe Flash Player.
4
What are the affected software versions of CVE-2018-5001?
Adobe Flash Player versions 29.0.0.171 and earlier are affected by CVE-2018-5001.
5
Is Adobe Flash Player the only affected software?
No, other software such as Google Chrome, Edge, and Internet Explorer 11 may also be affected depending on the version being used.