PT-2017-1811 · Adobe+3 · Flash Player+3

Publicado

2017-04-11

·

Atualizado

2018-10-02

·

CVE-2017-3060

CVSS v3.1

10

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Adobe Flash Player versions 25.0.0.127 and earlier
Description The issue is caused by a buffer overflow in memory when parsing ActionScript2 code, potentially allowing a remote attacker to execute arbitrary code, resulting in memory damage. This could lead to arbitrary code execution if successfully exploited.
Recommendations For Adobe Flash Player versions 25.0.0.127 and earlier, update to a version later than 25.0.0.127 to resolve the issue. At the moment, there is no information about other versions that contain a fix for this vulnerability.

Correção

Out of bounds Read

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2017-1495
ALT-PU-2018-2414
BDU:2017-00967
CVE-2017-3060
MGASA-2017-0114
RHSA-2017:0934
RHSA-2017_0934
SUSE-SU-2017:0990-1
ZDI-17-247
ZDI-17-248

Produtos afetados

Alt Linux
Flash Player
Red Hat
Suse