CVE-2017-2990
—CVSS 3.1
8.8 high
EPSS
10%p95
Published
()
Modified
Description
Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable memory corruption vulnerability in the h264 decompression routine. Successful exploitation could lead to arbitrary code execution.
- Vendors
- adobe
- Products
- flash player, flash player desktop runtime
- Weakness
- CWE-787
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.