Memory Corruption Vulnerability in Adobe Flash Player Prior to Version 25.0.0.171
CVE-2017-3078
Key Information:
- Vendor
- Adobe
- Vendor
- CVE Published:
- 20 June 2017
Badges
Summary
Adobe Flash Player versions 25.0.0.171 and earlier are susceptible to a memory corruption vulnerability within the Adobe Texture Format (ATF) module. Successful exploitation of this vulnerability may allow an attacker to execute arbitrary code. Users are highly urged to update their Flash Player to mitigate the risks associated with this security flaw.
Affected Version(s)
Adobe Flash Player 25.0.0.171 and earlier. Adobe Flash Player 25.0.0.171 and earlier.
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
EPSS Score
69% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
- 🟡
Public PoC available
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved