news.mlab.sh
Vulnerabilities
Vulnerability

CVE-2018-4878

Reference data from vuln.mlab.sh, coverage from our own index.

CVSS
7.8 High
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Risk score
100.0
Known exploited
CISA KEV
Published
2018-02-06
Status
Published

A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161. This vulnerability occurs due to a dangling pointer in the Primetime SDK related to media player handling of listener objects. A successful attack can lead to arbitrary code execution. This was exploited in the wild in January and February 2018.

Weaknesses

use-after-freeCWE-416

Coverage 0

No articles match these filters.

Reset filters

Advisories and references