Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X and before 11.2.202.632 on Linux allows attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors.
The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.
Link | Tags |
---|---|
http://lists.opensuse.org/opensuse-security-announce/2016-07/msg00017.html | vendor advisory broken link |
http://lists.opensuse.org/opensuse-security-announce/2016-07/msg00016.html | vendor advisory broken link |
https://helpx.adobe.com/security/products/flash-player/apsb16-25.html | patch vendor advisory |
https://access.redhat.com/errata/RHSA-2016:1423 | third party advisory vendor advisory |
http://www.securityfocus.com/bid/91723 | broken link third party advisory vdb entry |
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-093 | patch vendor advisory |
http://www.securitytracker.com/id/1036280 | broken link third party advisory vdb entry |