Adobe Flash Player Vulnerability (CVE-2016-1019)
Severity: CRITICAL
CVE Identifier: CVE-2016-1019
Advisory Date: APR 06, 2016
DESCRIPTION
This vulnerability, tagged as ‘critical’ is found in Adobe Flash Player 21.0.0.197 and earlier versions for Windows, Macintosh, Linux, and Chrome OS. Once successfully exploited, it could cause crash and allow remote attackers to take control of the affected system. As such, this compromises the security of the systems.
We are currently monitoring this for any attacks or threats that may leverage this vulnerability. Adobe will release an emergency patch to address the said vulnerability.
SOLUTION
PATCH: https://helpx.adobe.com/security/products/flash-player/apsb16-10.html
Trend Micro Deep Security DPI Rule Name: 1006532 - Identified Malicious Adobe Flash SWF File - 1
AFFECTED SOFTWARE AND VERSION
- Adobe Flash Player Extended Support Release 18.0.0.333 and earlier
- Adobe Flash Player for Google Chrome 21.0.0.197 and earlier
- Adobe Flash Player for Internet Explorer 11 21.0.0.197 and earlier
- Adobe Flash Player for Linux 11.2.202.577 and earlier
- Adobe Flash Player Desktop Runtime 21.0.0.197 and earlier
- Adobe Flash Player for Microsoft Edge and Internet Explorer 11 21.0.0.197 and earlier