Adobe Flash Player version 27.0.0.159 and earlier has a flawed bytecode verification procedure, which allows for an untrusted value to be used in the calculation of an array index. This can lead to type confusion, and successful exploitation could lead to arbitrary code execution.
Metrics
Affected Vendors & Products
References
History
Wed, 14 Aug 2024 00:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
MITRE
Status: PUBLISHED
Assigner: adobe
Published: 2017-10-21T05:00:00
Updated: 2024-08-05T18:05:30.368Z
Reserved: 2017-07-13T00:00:00
Link: CVE-2017-11292
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-10-22T19:29:00.237
Modified: 2024-11-21T03:07:29.570
Link: CVE-2017-11292
Redhat