CVE-2017-2988
HIGHAdobe Flash Player < 24.0.0.194 - Memory Corruption via Garbage Collection
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-2988. PoCs published by Google Security Research.
AI-analyzed exploit summary This exploit is a fuzzed SWF file that triggers stack corruption in Adobe Flash Player during parsing, leading to potential remote code execution. The PoC is provided as a binary file (ZIP) and is sourced from Project Zero.
Description
Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable memory corruption vulnerability when performing garbage collection. Successful exploitation could lead to arbitrary code execution.
Exploits (1)
This exploit is a fuzzed SWF file that triggers stack corruption in Adobe Flash Player during parsing, leading to potential remote code execution. The PoC is provided as a binary file (ZIP) and is sourced from Project Zero.
References (6)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H