Adobe Flash Player version 27.0.0.159 and earlier has a flawed bytecode verification procedure, which allows for an untrusted value to be used in the calculation of an array index. This can lead to type confusion, and successful exploitation could lead to arbitrary code execution.
Metrics
Affected Vendors & Products
References
History
Tue, 04 Feb 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
kev
|
Wed, 14 Aug 2024 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Status: PUBLISHED
Assigner: adobe
Published: 2017-10-21T05:00:00.000Z
Updated: 2025-07-30T01:46:20.868Z
Reserved: 2017-07-13T00:00:00.000Z
Link: CVE-2017-11292
Updated: 2024-08-05T18:05:30.368Z
Status : Deferred
Published: 2017-10-22T19:29:00.237
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-11292