CVE-2016-4178

Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X and before 11.2.202.632 on Linux allows attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
adobeCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 79%
VendorProductVersion
adobeflash_player_desktop_runtime
𝑥
≤ 22.0.0.192
adobeflash_player
𝑥
≤ 18.0.0.360
adobeflash_player
𝑥
≤ 22.0.0.192
adobeflash_player
𝑥
≤ 22.0.0.192
adobeflash_player
𝑥
≤ 22.0.0.192
adobeflash_player
𝑥
≤ 11.2.202.626
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
adobe-flashplugin
xenial
Fixed 1:20160712.1-0ubuntu0.16.04.1
released
wily
Fixed 1:20160712.1-0ubuntu0.15.10.1
released
trusty
Fixed 1:20160712.1-0ubuntu0.14.04.1
released
precise
Fixed 1:20160712.1-0ubuntu0.12.04.1
released
flashplugin-nonfree
xenial
Fixed 11.2.202.632ubuntu0.16.04.1
released
wily
Fixed 11.2.202.632ubuntu0.15.10.1
released
trusty
Fixed 11.2.202.632ubuntu0.14.04.1
released
precise
Fixed 11.2.202.632ubuntu0.12.04.1
released