PT-2017-15650 · Adobe+1 · Flash Player+1

Published

2017-07-11

·

Updated

2023-01-27

·

CVE-2017-3100

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Adobe Flash Player versions 26.0.0.131 and earlier
Description The issue is a memory corruption vulnerability in the Action Script 2 BitmapData class. This vulnerability could allow attackers to affect the system and lead to memory address disclosure. Successful exploitation of this issue could have significant consequences.
Recommendations For Adobe Flash Player versions 26.0.0.131 and earlier, consider updating to a version later than 26.0.0.131 to resolve the issue. As a temporary workaround, consider restricting the use of the Action Script 2 BitmapData class until a patch is available.

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2017-3100
MGASA-2017-0211
RHSA-2017:1731
RHSA-2017_1731
ZDI-17-477

Affected Products

Flash Player
Red Hat