Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2018-12827Out-of-bounds Read in Adobe Flash Player

CWE-125Out-of-bounds Read7 documents7 sources
Severity
7.5HIGHNVD
EPSS
8.3%
top 7.76%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedAug 29
Latest updateMay 14

Description

Adobe Flash Player 30.0.0.134 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Patches

🔴Vulnerability Details

3
GHSA
GHSA-5pcm-5j39-vg9p: Adobe Flash Player 302022-05-14
CVEList
CVE-2018-12827: Adobe Flash Player 302018-08-29
OSV
CVE-2018-12827: Adobe Flash Player 302018-08-29

💥Exploits & PoCs

1
Exploit-DB
Adobe Flash - AVC Processing Out-of-Bounds Read2018-08-27

📋Vendor Advisories

1
Red Hat
flash-plugin: Information Disclosure vulnerabilities (APSB18-25)2018-08-14

💬Community

1
Bugzilla
CVE-2018-12824 CVE-2018-12826 CVE-2018-12827 flash-plugin: Information Disclosure vulnerabilities (APSB18-25)2018-08-14
CVE-2018-12827 — Out-of-bounds Read in Adobe | cvebase