CVE-2017-2984: High severity Adobe Flash Player Chrome vulnerability
Published Feb 15, 2017
·Updated
Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable heap overflow vulnerability in the h264 decoder routine. Successful exploitation could lead to arbitrary code execution.
Affected Software
21 affected components
Adobe Flash Player Chrome<=24.0.0.194
Apple iOS and macOS
Google Chrome OS
Linux Linux kernel
Microsoft Windows
Adobe Flash Player Edge<=24.0.0.194
Adobe Flash Player Internet Explorer<=24.0.0.194
Microsoft Windows 10
Microsoft Windows 8.1
Adobe Flash Player Desktop Runtime<=24.0.0.194
All of the following
Adobe Flash Player Chrome<=24.0.0.194
Any of the following
Google Chrome OS
Linux Linux kernel
Microsoft Windows
All of the following
Any of the following
Adobe Flash Player Edge<=24.0.0.194
Adobe Flash Player Internet Explorer<=24.0.0.194
Any of the following
Microsoft Windows 10
Microsoft Windows 8.1
All of the following
Adobe Flash Player Desktop Runtime<=24.0.0.194
Any of the following
Linux Linux kernel
Microsoft Windows
Event History
Feb 15, 2017
CVE Published
via MITRE·06:11 AM
Data Sourced
via MITRE·06:11 AM
DescriptionWeakness
Data Sourced
via NVD·06:59 AM
RemedyDescriptionSeverityWeaknessAffected Software
Dec 13, 58332
Event
05:26 AM
Frequently Asked Questions
1
What is the severity of CVE-2017-2984?
CVE-2017-2984 is a high severity vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2017-2984?
To resolve CVE-2017-2984, users should upgrade to Adobe Flash Player version 24.0.0.195 or later.
3
Which versions of Adobe Flash Player are affected by CVE-2017-2984?
Adobe Flash Player versions 24.0.0.194 and earlier are affected by CVE-2017-2984.
4
What type of vulnerability is CVE-2017-2984?
CVE-2017-2984 is classified as a heap overflow vulnerability found in the h264 decoder routine.
5
Can exploitation of CVE-2017-2984 affect system security?
Yes, successful exploitation of CVE-2017-2984 can lead to arbitrary code execution, compromising system security.