Adobe Security Bulletin APSB16-32 for Adobe Flash Player describes multiple flaws that can possibly lead to code execution when Flash Player is used to play a specially crafted SWF file. Quoting from the APSB16-32: These updates resolve a type confusion vulnerability that could lead to code execution (CVE-2016-6992). These updates resolve use-after-free vulnerabilities that could lead to code execution (CVE-2016-6981, CVE-2016-6987). These updates resolve a security bypass vulnerability (CVE-2016-4286). These updates resolve memory corruption vulnerabilities that could lead to code execution (CVE-2016-4273, CVE-2016-6982, CVE-2016-6983, CVE-2016-6984, CVE-2016-6985, CVE-2016-6986, CVE-2016-6989, CVE-2016-6990). External References: https://helpx.adobe.com/security/products/flash-player/apsb16-32.html
This issue has been addressed in the following products: Red Hat Enterprise Linux 5 Supplementary Red Hat Enterprise Linux 6 Supplementary Via RHSA-2016:2057 https://rhn.redhat.com/errata/RHSA-2016-2057.html