PT-2017-15650 · Adobe+1 · Flash Player+1
Published
2017-07-11
·
Updated
2023-01-27
·
CVE-2017-3100
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Adobe Flash Player versions 26.0.0.131 and earlier
Description
The issue is a memory corruption vulnerability in the Action Script 2 BitmapData class. This vulnerability could allow attackers to affect the system and lead to memory address disclosure. Successful exploitation of this issue could have significant consequences.
Recommendations
For Adobe Flash Player versions 26.0.0.131 and earlier, consider updating to a version later than 26.0.0.131 to resolve the issue. As a temporary workaround, consider restricting the use of the Action Script 2 BitmapData class until a patch is available.
Fix
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Flash Player
Red Hat