Adobe Flash Player Out-of-Bounds Read Information Disclosure Vulnerability [CVE-2018-4871]
A vulnerability in Adobe Flash Player could allow an unauthenticated, remote attacker to access sensitive information on a targeted system.
The vulnerability is due to an unspecified condition in the affected software that could lead to an out-of-bounds read condition. An attacker could exploit this vulnerability by persuading a user to visit a web page that contains malicious Flash content. A successful exploit could allow the attacker to access sensitive information, which could be used to conduct additional attacks.
Adobe has confirmed the vulnerability and released software updates.
FreeBSD has released a VuXML document at the following link: Flash Player — information disclosure
- Flash Player Desktop Runtime version 28.0.0.137 for Windows and Macintosh
- Flash Player version 28.0.0.137 for Linux
- Flash Player for Google Chrome version 28.0.0.137 for Windows, Macintosh, Linux, and ChromeOS
- Flash Player for Microsoft Edge and Internet Explorer 11 version 28.0.0.137 for Windows 10 and Windows 8.1
FreeBSD has released ports collection updates at the following link: Ports Collection Index
![Adobe Flash Player Out-of-Bounds Read Information Disclosure Vulnerability [CVE-2018-4871]](https://i0.wp.com/www.systemtek.co.uk/wp-content/uploads/2022/01/blank-profile-hi.png?resize=100%2C100)
Duncan is a technology professional with over 20 years experience of working in various IT roles. He has a interest in cyber security, and has a wide range of other skills in radio, electronics and telecommunications.