vulnerability
FreeBSD: (Multiple Advisories) (CVE-2017-11215): Flash Player -- multiple vulnerabilities
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
10 | (AV:N/AC:L/Au:N/C:C/I:C/A:C) | Nov 14, 2017 | Nov 16, 2017 | May 7, 2019 |
Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Nov 14, 2017
Added
Nov 16, 2017
Modified
May 7, 2019
Description
An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability is an instance of a use after free vulnerability in the Primetime SDK. The mismatch between an old and a new object can provide an attacker with unintended memory access -- potentially leading to code corruption, control-flow hijack, or an information leak attack. Successful exploitation could lead to arbitrary code execution.
Solution(s)
freebsd-upgrade-package-chromiumfreebsd-upgrade-package-linux-flashplayer
References

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.