Description
Multiple serious vulnerabilities were found in Adobe Flash Player. Malicious users can exploit these vulnerabilities to obtain sensitive information, execute arbitrary code.
Below is a complete list of vulnerabilities:
- A out-of-bounds read vulnerability can be exploited remotely via specially crafted SWF file to obtain sensitive information;
- A type confusion vulnerability can be exploited remotely via specially crafted SWF file to execute arbitrary code.
Technical details
To update Adobe Flash Player ActiveX (detected as Flash.ocx) on Windows 8 and higher, install latest updates from Control Panel
Original advisories
Exploitation
Malware exists for this vulnerability. Usually such malware is classified as Exploit. More details.
Related products
CVE list
- CVE-2018-5007 high
- CVE-2018-5008 warning
Read more
Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com
Found an inaccuracy in the description of this vulnerability? Let us know!