Adobe Flash Player versions 29.0.0.140 and earlier have an exploitable type confusion vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.
The product does not correctly convert an object, resource, or structure from one type to a different type.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/104101 | vdb entry third party advisory |
http://www.securitytracker.com/id/1040840 | vdb entry third party advisory |
https://access.redhat.com/errata/RHSA-2018:1367 | third party advisory vendor advisory |
https://security.gentoo.org/glsa/201806-02 | third party advisory vendor advisory |
https://helpx.adobe.com/security/products/flash-player/apsb18-16.html | vendor advisory |