Memory Corruption Vulnerability in Adobe Flash Player
CVE-2017-3077
9.8CRITICAL
Key Information:
- Vendor
- Adobe
- Vendor
- CVE Published:
- 20 June 2017
Summary
Adobe Flash Player, specifically versions 25.0.0.171 and earlier, contains a memory corruption vulnerability within its PNG image parser. This flaw may enable an attacker to execute arbitrary code on the system, potentially allowing for unauthorized access and control. Users of affected versions are advised to update to the latest version to mitigate this risk.
Affected Version(s)
Adobe Flash Player 25.0.0.171 and earlier. Adobe Flash Player 25.0.0.171 and earlier.
References
EPSS Score
53% chance of being exploited in the next 30 days.
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved