ZeroHour

CVE-2017-3073

CVSS 3.1
8.8 high
EPSS
5%p91
Published
()
Modified
Description

Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable use after free vulnerability when handling multiple mask properties of display objects, aka memory corruption. Successful exploitation could lead to arbitrary code execution.

Vendors
adoberedhat
Products
flash player desktop runtime, flash player, enterprise linux, enterprise linux desktop, enterprise linux workstation
Weakness
CWE-416
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news