CVE-2017-3099

Description

Adobe Flash Player versions 26.0.0.131 and earlier have an exploitable memory corruption vulnerability in the Action Script 3 raster data model. Successful exploitation could lead to arbitrary code execution.

Risk Information

Base Score
8.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
1.168

Associated Vulnerability

VulnerabilityOS Platform
2017-07 Security Update for Adobe Flash Player for Windows 10 Version 1703 for x64-based Systems (KB4025376)Windows
2017-07 Security Update for Adobe Flash Player for Windows Server 2016 for x64-based Systems (KB4025376)Windows
2017-07 Security Update for Adobe Flash Player for Windows 10 Version 1607 for x64-based Systems (KB4025376)Windows
2017-07 Security Update for Adobe Flash Player for Windows 10 Version 1607 for x86-based Systems (KB4025376)Windows
2017-07 Security Update for Adobe Flash Player for Windows 10 Version 1703 for x86-based Systems (KB4025376)Windows
2017-07 Security Update for Adobe Flash Player for Windows Server 2012 for x64-based Systems (KB4025376)Windows
2017-07 Security Update for Adobe Flash Player for Windows Server 2012 R2 for x64-based Systems (KB4025376)Windows
2017-07 Security Update for Adobe Flash Player for Windows 8.1 for x64-based Systems (KB4025376)Windows
2017-07 Security Update for Adobe Flash Player for Windows 8.1 for x86-based Systems (KB4025376)Windows
2017-07 Security Update for Adobe Flash Player for Windows 10 Version 1511 for x64-based Systems (KB4025376)Windows
2017-07 Security Update for Adobe Flash Player for Windows 10 Version 1507 for x64-based Systems (KB4025376)Windows
2017-07 Security Update for Adobe Flash Player for Windows 10 Version 1511 for x86-based Systems (KB4025376)Windows
Upgrade Adobe flash player 26.0.0.131 to latest versionWindows
Vulnerabilities CVE-2017-3080,CVE-2017-3099,CVE-2017-3100 are affected in Adobe Flash Player Plugin 26.0.0.131Windows
Vulnerabilities CVE-2017-3080,CVE-2017-3099,CVE-2017-3100 are affected in Adobe Flash Player PPAPI 26.0.0.131Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-228362017-07 Security Update for Adobe Flash Player for Windows 10 Version 1703 for x64-based Systems (KB4025376)
PATCH-228342017-07 Security Update for Adobe Flash Player for Windows Server 2016 for x64-based Systems (KB4025376)
PATCH-228332017-07 Security Update for Adobe Flash Player for Windows 10 Version 1607 for x64-based Systems (KB4025376)
PATCH-228322017-07 Security Update for Adobe Flash Player for Windows 10 Version 1607 for x86-based Systems (KB4025376)
PATCH-228352017-07 Security Update for Adobe Flash Player for Windows 10 Version 1703 for x86-based Systems (KB4025376)
PATCH-228392017-07 Security Update for Adobe Flash Player for Windows Server 2012 for x64-based Systems (KB4025376)
PATCH-228402017-07 Security Update for Adobe Flash Player for Windows Server 2012 R2 for x64-based Systems (KB4025376)
PATCH-228382017-07 Security Update for Adobe Flash Player for Windows 8.1 for x64-based Systems (KB4025376)
PATCH-228372017-07 Security Update for Adobe Flash Player for Windows 8.1 for x86-based Systems (KB4025376)
PATCH-228312017-07 Security Update for Adobe Flash Player for Windows 10 Version 1511 for x64-based Systems (KB4025376)
PATCH-228292017-07 Security Update for Adobe Flash Player for Windows 10 Version 1507 for x64-based Systems (KB4025376)
PATCH-228302017-07 Security Update for Adobe Flash Player for Windows 10 Version 1511 for x86-based Systems (KB4025376)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234