CVE-2017-2995 PUBLISHED

Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable type confusion vulnerability related to the MessageChannel class. Successful exploitation could lead to arbitrary code execution.

EPSS 8.81% · 92.5th percentile

Risk Scores

EPSS Score
8.81%
92.5th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSflashplugin-nonfree0, 11.2.202.310ubuntu1, 11.2.202.327ubuntu0.13.10.1
Ubuntu:16.04:LTSflashplugin-nonfree0, 11.2.202.540ubuntu2, 11.2.202.548ubuntu1

Timeline

References

Open in Interactive Console →