MS16-022: Security Update for Adobe Flash Player (3135782)
High Nessus Plugin ID 88654
SynopsisThe remote Windows host has a browser plugin installed that is affected by multiple vulnerabilities.
DescriptionThe remote Windows host is missing KB3135782. It is, therefore, affected by multiple vulnerabilities :
- A type confusion error exists that allows a remote attacker to execute arbitrary code. (CVE-2016-0985)
- Multiple use-after-free errors exist that allow a remote attacker to execute arbitrary code. (CVE-2016-0973, CVE-2016-0974, CVE-2016-0975, CVE-2016-0982, CVE-2016-0983, CVE-2016-0984)
- A heap buffer overflow condition exist that allows an attacker to execute arbitrary code. (CVE-2016-0971)
- Multiple memory corruption issues exist that allow a remote attacker to execute arbitrary code.
(CVE-2016-0964, CVE-2016-0965, CVE-2016-0966, CVE-2016-0967, CVE-2016-0968, CVE-2016-0969, CVE-2016-0970, CVE-2016-0972, CVE-2016-0976, CVE-2016-0977, CVE-2016-0978, CVE-2016-0979, CVE-2016-0980, CVE-2016-0981)
SolutionMicrosoft has released a set of patches for Windows 2012, 8.1, RT 8.1, 2012 R2, and 10.