CVE-2017-2936: Use After Free
Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable use after free vulnerability in the ActionScript FileReference class. Successful exploitation could lead to arbitrary code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-2936?
CVE-2017-2936 has a critical severity level as it allows for arbitrary code execution upon successful exploitation.
How do I fix CVE-2017-2936?
To fix CVE-2017-2936, update Adobe Flash Player to version 24.0.0.187 or later, which addresses this vulnerability.
Which versions of Adobe Flash Player are affected by CVE-2017-2936?
Adobe Flash Player versions up to and including 24.0.0.186 are affected by CVE-2017-2936.
What platforms are vulnerable to CVE-2017-2936?
CVE-2017-2936 affects Adobe Flash Player on platforms running supported versions of Windows with the specified versions.
What could be the impact of exploiting CVE-2017-2936?
Exploitation of CVE-2017-2936 could lead to arbitrary code execution, allowing an attacker to potentially take control of the affected system.