from TrendLabs Security Intelligence Blog
On March 10, Adobe has released an emergency out-of-band update to fix a zero-day vulnerability that was being used in targeted attacks. The vulnerability was designated as CVE-2016-1010 and was privately reported to Adobe as well. To analyze this vulnerability, I examined an earlier version of the Flash Player (Flash32_19_0_0_185.ocx file on Windows 7) to find the root cause of the vulnerability.
Post from: Trendlabs Security Intelligence Blog - by Trend Micro
A Root Cause Analysis of the Recent Flash Zero-Day Vulnerability, CVE-2016-1010