CVE-2017-2932
HIGHAdobe Flash Player < 24.0.0.186 - Use-After-Free in ActionScript MovieClip
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-2932. PoCs published by Google Security Research.
AI-analyzed exploit summary This exploit triggers a use-after-free vulnerability in Adobe Flash Player by manipulating a MovieClip object and its init object. The provided ZIP file contains a crafted SWF file that demonstrates the vulnerability.
Description
Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable use after free vulnerability in the ActionScript MovieClip class. Successful exploitation could lead to arbitrary code execution.
Exploits (1)
This exploit triggers a use-after-free vulnerability in Adobe Flash Player by manipulating a MovieClip object and its init object. The provided ZIP file contains a crafted SWF file that demonstrates the vulnerability.
References (6)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H