Security Advisory

CVE-2017-3112

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-12-09 06:00:00
Last updated 2024-08-05 14:16:27
Assigner adobe
CVSS score not scored
State PUBLISHED

Description

An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability occurs as a result of a computation that reads data that is past the end of the target buffer; the computation is part of AdobePSDK metadata. The use of an invalid (out-of-range) pointer offset during access of internal data structure fields causes the vulnerability. A successful attack can lead to sensitive data exposure.