CVE-2017-2938
published 2017-01-11CVE-2017-2938: Adobe Flash Player versions 24.0.0.186 and earlier have a security bypass vulnerability related to handling TCP connections.
PriorityP434medium6.5CVSS 3.1
AVNACLPRNUIRSUCHINAN
EPSS
5.08%
91.4th percentile
Adobe Flash Player versions 24.0.0.186 and earlier have a security bypass vulnerability related to handling TCP connections.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | flash_player | <= 24.0.0.186 | — |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
osv6.5MEDIUM
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
flash-plugin: multiple code execution issues fixed in APSB17-02
vendor_redhat·2017-01-10·CVSS 6.5
CVE-2017-2938 [MEDIUM] flash-plugin: multiple code execution issues fixed in APSB17-02
flash-plugin: multiple code execution issues fixed in APSB17-02
Adobe Flash Player versions 24.0.0.186 and earlier have a security bypass vulnerability related to handling TCP connections.
Package: flash-plugin (Red Hat Enterprise Linux 5) - Will not fix
GHSA
GHSA-gx39-fvj4-xp9c: Adobe Flash Player versions 24
ghsa_unreviewed·2022-05-13
CVE-2017-2938 [HIGH] GHSA-gx39-fvj4-xp9c: Adobe Flash Player versions 24
Adobe Flash Player versions 24.0.0.186 and earlier have a security bypass vulnerability related to handling TCP connections.
OSV
CVE-2017-2938: Adobe Flash Player versions 24
osv·2017-01-11·CVSS 6.5
CVE-2017-2938 [MEDIUM] CVE-2017-2938: Adobe Flash Player versions 24
Adobe Flash Player versions 24.0.0.186 and earlier have a security bypass vulnerability related to handling TCP connections.
No detection rules found.
No public exploits indexed.
http://rhn.redhat.com/errata/RHSA-2017-0057.htmlhttp://www.securityfocus.com/bid/95341http://www.securitytracker.com/id/1037570https://helpx.adobe.com/security/products/flash-player/apsb17-02.htmlhttps://security.gentoo.org/glsa/201702-20http://rhn.redhat.com/errata/RHSA-2017-0057.htmlhttp://www.securityfocus.com/bid/95341http://www.securitytracker.com/id/1037570https://helpx.adobe.com/security/products/flash-player/apsb17-02.htmlhttps://security.gentoo.org/glsa/201702-20
2017-01-11
Published