HIGH
flash-plugin: Privilege Escalation vulnerability (APSB18-42)
Published Jan 18, 2019
7.8
HIGHCVSS 3.0
EPSS 3.28%
Description
Flash Player versions 31.0.0.153 and earlier, and 31.0.0.108 and earlier have an insecure library loading (dll hijacking) vulnerability. Successful exploitation could lead to privilege escalation.
Affected products
No data.
Configuration 1
AND
- ≤ 31.0.0.153
Configuration 2
AND
- ≤ 31.0.0.153
Configuration 3
AND
OR
- ≤ 31.0.0.153
- ≤ 31.0.0.153
Running on/with
OR
- n/a
- n/a
No data.
Red Hat Enterprise Linux 6
flash-plugin
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | flash-plugin | Not affected | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (6)
- http://www.securityfocus.com/bid/106108 vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry
- https://access.redhat.com/security/cve/CVE-2018-15983 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1656586 Issue Tracking
- https://helpx.adobe.com/security/products/flash-player/apsb18-42.html x_refsource_CONFIRMPatchVendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2018-15983
- https://www.cve.org/CVERecord?id=CVE-2018-15983
| Link | Providers | Tags |
|---|---|---|
| http://www.securityfocus.com/bid/106108 | vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry | |
| https://access.redhat.com/security/cve/CVE-2018-15983 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=1656586 | Issue Tracking | |
| https://helpx.adobe.com/security/products/flash-player/apsb18-42.html | x_refsource_CONFIRMPatchVendor Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2018-15983 | ||
| https://www.cve.org/CVERecord?id=CVE-2018-15983 |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner adobe
Published Jan 18, 2019
Updated Aug 5, 2024
Reserved Aug 28, 2018
Link CVE-2018-15983
CISA Vulnrichment
Updated n/a