CVE-2016-4166Out-of-bounds Write in Adobe Flash Player

Severity
8.8HIGHNVD
EPSS
3.7%
top 12.08%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 16
Latest updateMay 14

Description

Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-083.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-vv68-xgj6-26cc: Unspecified vulnerability in Adobe Flash Player 212022-05-14
CVEList
CVE-2016-4166: Unspecified vulnerability in Adobe Flash Player 212016-06-16

📋Vendor Advisories

1
Red Hat
flash-plugin: multiple code execution issues fixed in APSB16-182016-06-14
CVE-2016-4166 — Out-of-bounds Write in Adobe | cvebase