PT-2017-1496 · Adobe+3 · Flash Player+3

Published

2017-02-17

·

Updated

2023-01-24

·

CVE-2017-3000

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Adobe Flash Player versions 24.0.0.221 and earlier
Description The issue is related to a vulnerability in the random number generator used for constant blinding in Adobe Flash Player. This vulnerability could lead to information disclosure if successfully exploited. The vulnerability is associated with a lack of protection for service data, which could allow a remote attacker to breach confidentiality.
Recommendations For Adobe Flash Player versions 24.0.0.221 and earlier, update to a version later than 24.0.0.221 to resolve the issue. At the moment, there is no information about other versions that contains a fix for this vulnerability.

Exploit

Fix

Information Disclosure

Weakness Enumeration

Related Identifiers

ALT-PU-2017-1172
ALT-PU-2017-1308
ALT-PU-2017-1495
ALT-PU-2017-1581
ALT-PU-2017-1727
ALT-PU-2017-2075
ALT-PU-2017-2290
ALT-PU-2017-2537
ALT-PU-2017-2836
ALT-PU-2018-1250
ALT-PU-2018-1421
ALT-PU-2018-1663
ALT-PU-2018-2115
ALT-PU-2018-2414
BDU:2017-00641
CVE-2017-3000
MGASA-2017-0087
RHSA-2017:0526
RHSA-2017_0526
RHSA-2017_0934
RHSA-2017_1219
RHSA-2017_1439
RHSA-2017_2457
RHSA-2017_2702
RHSA-2017_2899
RHSA-2017_3222
RHSA-2018_0081
RHSA-2018_0285
RHSA-2018_0484
RHSA-2018_0520
RHSA-2018_1119
RHSA-2018_1827
RHSA-2018_2175
RHSA-2018_2707
SUSE-SU-2017:0703-1
SUSE-SU-2017_0703-1

Affected Products

Alt Linux
Flash Player
Red Hat
Suse