CVE-2017-3081
critical · 9.8Adobe Flash Player versions 25.0.0.171 and earlier have an exploitable use after free vulnerability during internal computation caused by multiple display object mask manipulations. Successful exploitation could lead to arbitrary code execution.
9.8
CVSS
14.4%
EPSS (exploit prob.)
96th
EPSS percentile
2017-06-20
Published
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-416
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| adobe | flash_player | <= 25.0.0.171 |
| adobe | flash_player | <= 25.0.0.171 |
| microsoft | windows_10 | all versions |
| microsoft | windows_8.1 | all versions |
| adobe | flash_player | <= 25.0.0.171 |
| apple | mac_os_x | all versions |
| chrome_os | all versions | |
| linux | linux_kernel | all versions |
| microsoft | windows | all versions |
| adobe | flash_player | <= 25.0.0.171 |
| apple | mac_os_x | all versions |
| linux | linux_kernel | all versions |
| microsoft | windows | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://www.securityfocus.com/bid/99023
- http://www.securitytracker.com/id/1038655
- https://access.redhat.com/errata/RHSA-2017:1439
- https://helpx.adobe.com/security/products/flash-player/apsb17-17.html
- https://security.gentoo.org/glsa/201707-15
- http://www.securityfocus.com/bid/99023
- http://www.securitytracker.com/id/1038655
- https://access.redhat.com/errata/RHSA-2017:1439
- https://helpx.adobe.com/security/products/flash-player/apsb17-17.html
- https://security.gentoo.org/glsa/201707-15
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2017-3081