Adobe Flash Player versions 26.0.0.131 and earlier have an exploitable memory corruption vulnerability in the Action Script 3 raster data model. Successful exploitation could lead to arbitrary code execution.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/99520 | vdb entry third party advisory broken link |
http://www.securitytracker.com/id/1038845 | vdb entry third party advisory broken link |
https://access.redhat.com/errata/RHSA-2017:1731 | third party advisory vendor advisory |
https://helpx.adobe.com/security/products/flash-player/apsb17-21.html | patch vendor advisory |
https://security.gentoo.org/glsa/201707-15 | third party advisory vendor advisory |