CVE-2017-3077
CRITICALAdobe Flash Player <= 25.0.0.171 - Memory Corruption in PNG Image Parser
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-3077. PoCs published by Google Security Research.
AI-analyzed exploit summary This exploit leverages an out-of-bounds read vulnerability in Adobe Flash when decoding a malformed PNG file. The PoC includes a SWF file and a crafted PNG that triggers the issue when accessed via a specific URL.
Description
Adobe Flash Player versions 25.0.0.171 and earlier have an exploitable memory corruption vulnerability in the PNG image parser. Successful exploitation could lead to arbitrary code execution.
Exploits (1)
This exploit leverages an out-of-bounds read vulnerability in Adobe Flash when decoding a malformed PNG file. The PoC includes a SWF file and a crafted PNG that triggers the issue when accessed via a specific URL.
References (6)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H