RULE(RULE ID:320695)

Rule General Information
Release Date: 2018-03-05
Rule Name: WEB-APP Adobe Flash Player Use-After-Free Vulnerability -3 (CVE-2018-4878)
Severity:
CVE ID:
Rule Protection Details
Description: A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161. This vulnerability occurs due to a dangling pointer in the Primetime SDK related to media player handling of listener objects. A successful attack can lead to arbitrary code execution.
Impact: An attacker can execute arbitrary code via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others
Reference: SecurityFocusBID:102893
SecurityTrackerID:1040318
AdobeSecurityBulletins:apsb18-03
Solutions
Adobe has issued a fix on the official website. For more advisory, please visit:
https://helpx.adobe.com/security/products/flash-player/apsb18-03.html