
CVE-2016-0985 – Adobe Flash - textfield Constructor Type Confusion
https://notcve.org/view.php?id=CVE-2016-0985
10 Feb 2016 — Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allow attackers to execute arbitrary code by leveraging an unspecified "type confusion." Adobe Flash Player en versiones anteriores a 18.0.0.329 y 19.x y 20.x en versiones anteriores a 20.0.0.306 en Windows y OS X y en versiones anteriores a 11.2.202.569 en Linux, Adobe AIR e... • https://packetstorm.news/files/id/135823 • CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') •

CVE-2016-0964 – Adobe Flash - BitmapData.drawWithQuality Heap Overflow
https://notcve.org/view.php?id=CVE-2016-0964
10 Feb 2016 — Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0965, CVE-2016-0966, CVE-2016-0967, CVE-2016-0968, CVE-2016-0969, CVE-2016-0970, CVE-2016-0972, CVE-2016-0976, CVE-2016-... • https://packetstorm.news/files/id/135816 • CWE-787: Out-of-bounds Write •

CVE-2016-0982 – flash-plugin: multiple code execution issues fixed in APSB16-04
https://notcve.org/view.php?id=CVE-2016-0982
10 Feb 2016 — Use-after-free vulnerability in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-0973, CVE-2016-0974, CVE-2016-0975, CVE-2016-0983, and CVE-2016-0984. Vulnerabilidad de uso después de liberación de memoria en Adobe Fl... • http://lists.opensuse.org/opensuse-security-announce/2016-02/msg00025.html •

CVE-2016-0983 – flash-plugin: multiple code execution issues fixed in APSB16-04
https://notcve.org/view.php?id=CVE-2016-0983
10 Feb 2016 — Use-after-free vulnerability in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-0973, CVE-2016-0974, CVE-2016-0975, CVE-2016-0982, and CVE-2016-0984. Vulnerabilidad de uso después de liberación de memoria en Adobe Fl... • http://lists.opensuse.org/opensuse-security-announce/2016-02/msg00025.html • CWE-416: Use After Free •

CVE-2016-0981 – flash-plugin: multiple code execution issues fixed in APSB16-04
https://notcve.org/view.php?id=CVE-2016-0981
10 Feb 2016 — Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0964, CVE-2016-0965, CVE-2016-0966, CVE-2016-0967, CVE-2016-0968, CVE-2016-0969, CVE-2016-0970, CVE-2016-0972, CVE-2016-... • http://lists.opensuse.org/opensuse-security-announce/2016-02/msg00025.html • CWE-787: Out-of-bounds Write •

CVE-2016-0973 – Adobe Flash URLRequest Use-After-Free Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2016-0973
09 Feb 2016 — Use-after-free vulnerability in the URLRequest object implementation in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allows attackers to execute arbitrary code via a URLLoader.load call, a different vulnerability than CVE-2016-0974, CVE-2016-0975, CVE-2016-0982, CVE-2016-0983, and CVE-2016-0984. Vulnerabilidad de uso de... • http://lists.opensuse.org/opensuse-security-announce/2016-02/msg00025.html • CWE-416: Use After Free •

CVE-2016-0975 – Adobe Flash instanceof Use-After-Free Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2016-0975
09 Feb 2016 — Use-after-free vulnerability in the instanceof function in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allows attackers to execute arbitrary code by leveraging improper reference handling, a different vulnerability than CVE-2016-0973, CVE-2016-0974, CVE-2016-0982, CVE-2016-0983, and CVE-2016-0984. Vulnerabilidad de uso... • http://lists.opensuse.org/opensuse-security-announce/2016-02/msg00025.html • CWE-416: Use After Free •

CVE-2015-8634 – Adobe Flash - Use-After-Free When Setting Stage
https://notcve.org/view.php?id=CVE-2015-8634
28 Dec 2015 — Use-after-free vulnerability in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-8635, CVE-2015-8638, CVE-2015-8639, CVE-2015-8640, CVE-2015-8641, CVE-2015-8642, CVE-2015-8643, CVE-2015-8646, CVE-2015-8647, CVE-2015-8... • https://packetstorm.news/files/id/135200 •

CVE-2015-8635 – Adobe Flash (Multiple Scripts) - Use-After-Free When Rendering Displays
https://notcve.org/view.php?id=CVE-2015-8635
28 Dec 2015 — Use-after-free vulnerability in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-8634, CVE-2015-8638, CVE-2015-8639, CVE-2015-8640, CVE-2015-8641, CVE-2015-8642, CVE-2015-8643, CVE-2015-8646, CVE-2015-8647, CVE-2015-8... • https://packetstorm.news/files/id/135199 •

CVE-2015-8636 – Adobe Flash BlurFilter Processing - Out-of-Bounds Memset
https://notcve.org/view.php?id=CVE-2015-8636
28 Dec 2015 — Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-8459, CVE-2015-8460, and CVE-2015-8645. Adobe Flash Player en versiones anteriores a 18.0.0.324 y 19.x y 20.x en version... • https://packetstorm.news/files/id/135198 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •