风险等级: 緊急
  CVE标识符: : CVE-2016-1019
  建议日期 : 2016年4月6日

  描述

This vulnerability, tagged as ‘critical’ is found in Adobe Flash Player 21.0.0.197 and earlier versions for Windows, Macintosh, Linux, and Chrome OS. Once successfully exploited, it could cause crash and allow remote attackers to take control of the affected system. As such, this compromises the security of the systems.

We are currently monitoring this for any attacks or threats that may leverage this vulnerability. Adobe will release an emergency patch to address the said vulnerability.

  解决方案

  补丁: https://helpx.adobe.com/security/products/flash-player/apsb16-10.html

  Trend Micro Deep Security DPI Rule Name: 1006532 - Identified Malicious Adobe Flash SWF File - 1

  受感染软件和版本:

  • Adobe Flash Player Extended Support Release 18.0.0.333 and earlier
  • Adobe Flash Player for Google Chrome 21.0.0.197 and earlier
  • Adobe Flash Player for Internet Explorer 11 21.0.0.197 and earlier
  • Adobe Flash Player for Linux 11.2.202.577 and earlier
  • Adobe Flash Player Desktop Runtime 21.0.0.197 and earlier
  • Adobe Flash Player for Microsoft Edge and Internet Explorer 11 21.0.0.197 and earlier