CVE-2016-0985

HIGH

Details

Source: MITRE

Published: 2016-02-10

Updated: 2017-09-10

Risk Information

CVSS v2.0

Base Score: 9.3

Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Impact Score: 10

Exploitability Score: 8.6

Severity: HIGH

CVSS v3.0

Base Score: 8.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Impact Score: 5.9

Exploitability Score: 2.8

Severity: HIGH

Vulnerable Software

Configuration 1

AND

OR

cpe:2.3:a:adobe:air_sdk:*:*:*:*:*:*:*:*

cpe:2.3:a:adobe:air_sdk_\\\&_compiler:*:*:*:*:*:*:*:*

OR

cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*

cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*

cpe:2.3:o:google:android:*:*:*:*:*:*:*:*

cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*

Configuration 2

AND

OR

cpe:2.3:a:adobe:air:*:*:*:*:*:*:*:*

OR

cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*

cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*

Configuration 3

AND

OR

cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*

cpe:2.3:a:adobe:flash_player:19.0.0.185:*:*:*:*:*:*:*

cpe:2.3:a:adobe:flash_player:19.0.0.207:*:*:*:*:*:*:*

cpe:2.3:a:adobe:flash_player:19.0.0.226:*:*:*:*:*:*:*

cpe:2.3:a:adobe:flash_player:19.0.0.245:*:*:*:*:*:*:*

cpe:2.3:a:adobe:flash_player:20.0.0.228:*:*:*:*:*:*:*

cpe:2.3:a:adobe:flash_player:20.0.0.235:*:*:*:*:*:*:*

cpe:2.3:a:adobe:flash_player:20.0.0.286:*:*:*:*:*:*:*

OR

cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*

Configuration 4

AND

OR

cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*

OR

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

Configuration 5

OR

cpe:2.3:o:redhat:enterprise_linux_desktop:5.0:*:*:*:*:*:*:*

cpe:2.3:o:redhat:enterprise_linux_desktop_supplementary:6.0:*:*:*:*:*:*:*

cpe:2.3:o:redhat:enterprise_linux_server_supplementary:6.0:*:*:*:*:*:*:*

cpe:2.3:o:redhat:enterprise_linux_server_supplementary_eus:6.7z:*:*:*:*:*:*:*

cpe:2.3:o:redhat:enterprise_linux_supplementary:5.0:*:*:*:*:*:*:*

cpe:2.3:o:redhat:enterprise_linux_workstation_supplementary:6.0:*:*:*:*:*:*:*

Configuration 6

OR

cpe:2.3:a:opensuse:nonfree:13.1:*:*:*:*:*:*:*

cpe:2.3:a:opensuse:nonfree:13.2:*:*:*:*:*:*:*

cpe:2.3:o:opensuse:linux_enterprise_desktop:11:sp4:*:*:*:*:*:*

cpe:2.3:o:opensuse:linux_enterprise_desktop:12:*:*:*:*:*:*:*

cpe:2.3:o:opensuse:linux_enterprise_desktop:12:sp1:*:*:*:*:*:*

cpe:2.3:o:opensuse:linux_enterprise_workstation_extension:12:*:*:*:*:*:*:*

cpe:2.3:o:opensuse:linux_enterprise_workstation_extension:12:sp1:*:*:*:*:*:*

Tenable Plugins

View all (12 total)

IDNameProductFamilySeverity
9154Adobe AIR < 20.0.0.260 Multiple Vulnerabilities (APSB16-04)Nessus Network MonitorWeb Clients
critical
9153Flash Player < 20.0.0.306 Multiple Vulnerabilities (APSB16-04)Nessus Network MonitorWeb Clients
critical
89900GLSA-201603-07 : Adobe Flash Player: Multiple vulnerabilitiesNessusGentoo Local Security Checks
critical
88706openSUSE Security Update : flash-player (openSUSE-2016-186)NessusSuSE Local Security Checks
critical
88690RHEL 5 / 6 : flash-plugin (RHSA-2016:0166)NessusRed Hat Local Security Checks
critical
88688openSUSE Security Update : flash-player (openSUSE-2016-183)NessusSuSE Local Security Checks
critical
88684FreeBSD : flash -- multiple vulnerabilities (5d8e56c3-9e67-4d5b-81c9-3a409dfd705f)NessusFreeBSD Local Security Checks
critical
88654MS16-022: Security Update for Adobe Flash Player (3135782)NessusWindows : Microsoft Bulletins
critical
88641Adobe Flash Player for Mac <= 20.0.0.286 Multiple Vulnerabilities (APSB16-04)NessusMacOS X Local Security Checks
critical
88640Adobe AIR for Mac <= 20.0.0.233 Multiple Vulnerabilities (APSB16-04)NessusMacOS X Local Security Checks
critical
88639Adobe Flash Player <= 20.0.0.286 Multiple Vulnerabilities (APSB16-04)NessusWindows
critical
88638Adobe AIR <= 20.0.0.233 Multiple Vulnerabilities (APSB16-04)NessusWindows
critical