Adobe Flash Player Vulnerability (CVE-2016-1019)
2016年4月11日
风险等级: 緊急
CVE标识符: : CVE-2016-1019
建议日期 : 2016年4月6日
描述
This vulnerability, tagged as ‘critical’ is found in Adobe Flash Player 21.0.0.197 and earlier versions for Windows, Macintosh, Linux, and Chrome OS. Once successfully exploited, it could cause crash and allow remote attackers to take control of the affected system. As such, this compromises the security of the systems.
We are currently monitoring this for any attacks or threats that may leverage this vulnerability. Adobe will release an emergency patch to address the said vulnerability.
解决方案
补丁: https://helpx.adobe.com/security/products/flash-player/apsb16-10.html
Trend Micro Deep Security DPI Rule Name: 1006532 - Identified Malicious Adobe Flash SWF File - 1
受感染软件和版本:
- Adobe Flash Player Extended Support Release 18.0.0.333 and earlier
- Adobe Flash Player for Google Chrome 21.0.0.197 and earlier
- Adobe Flash Player for Internet Explorer 11 21.0.0.197 and earlier
- Adobe Flash Player for Linux 11.2.202.577 and earlier
- Adobe Flash Player Desktop Runtime 21.0.0.197 and earlier
- Adobe Flash Player for Microsoft Edge and Internet Explorer 11 21.0.0.197 and earlier