#VU1078 Use-after-free error in Adobe Flash Player and Adobe Flash Player for Linux - CVE-2016-7855
Published: October 26, 2016 / Updated: March 8, 2022
Adobe Flash Player
Adobe Flash Player for Linux
Adobe
Description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to use-after-free error when handling .swf files. A remote attacker can trick the victim to visit a website or open a file with malicious Flash file and execute arbitrary code on the target system with privileges of the current user.
Note: this vulnerability was being actively exploited in the wild.