CVE-2017-3061
CRITICALAdobe Flash Player <= 25.0.0.127 - Memory Corruption in SWF Parser
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-3061. PoCs published by Google Security Research.
AI-analyzed exploit summary This exploit leverages a heap corruption vulnerability in Adobe Flash Player when processing margins of a rich text field in a malformed SWF file. The provided SWF file triggers the crash, demonstrating the vulnerability.
Description
Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable memory corruption vulnerability in the SWF parser. Successful exploitation could lead to arbitrary code execution.
Exploits (1)
This exploit leverages a heap corruption vulnerability in Adobe Flash Player when processing margins of a rich text field in a malformed SWF file. The provided SWF file triggers the crash, demonstrating the vulnerability.
References (6)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H