CVE Database
/

CVE-2017-11225

Back to search

CVE-2017-11225

Published: Dec 9, 2017

Modified: Aug 5, 2024

PUBLISHED

Description

An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability is an instance of a use after free vulnerability in the Primetime SDK metadata functionality. The mismatch between an old and a new object can provide an attacker with unintended memory access -- potentially leading to code corruption, control-flow hijack, or an information leak attack. Successful exploitation could lead to arbitrary code execution.

VendorProductVersions

n/a

Adobe Flash Player 27.0.0.183 and earlier versions

affected
Adobe Flash Player 27.0.0.183 and earlier versions

References

RHSA-2017:3222
vendor-advisory
x_refsource_REDHAT
GLSA-201711-13
vendor-advisory
x_refsource_GENTOO
101837
vdb-entry
x_refsource_BID
1039778
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now