CVE-2017-2997
published 2017-03-14CVE-2017-2997: Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable buffer overflow / underflow vulnerability in the Primetime TVSDK that supports…
PriorityP347high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
7.40%
93.8th percentile
Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable buffer overflow / underflow vulnerability in the Primetime TVSDK that supports customizing ad information. Successful exploitation could lead to arbitrary code execution.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | flash_player | <= 24.0.0.221 | — |
| adobe | flash_player_desktop_runtime | <= 24.0.0.221 | — |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
vendor_redhat8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
flash-plugin: multiple code execution issues fixed in APSB17-07
vendor_redhat·2017-03-14·CVSS 8.8
CVE-2017-2997 [HIGH] flash-plugin: multiple code execution issues fixed in APSB17-07
flash-plugin: multiple code execution issues fixed in APSB17-07
Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable buffer overflow / underflow vulnerability in the Primetime TVSDK that supports customizing ad information. Successful exploitation could lead to arbitrary code execution.
Package: flash-plugin (Red Hat Enterprise Linux 5) - Will not fix
GHSA
GHSA-4vhw-m4wv-jrr8: Adobe Flash Player versions 24
ghsa_unreviewed·2022-05-14
CVE-2017-2997 [CRITICAL] CWE-119 GHSA-4vhw-m4wv-jrr8: Adobe Flash Player versions 24
Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable buffer overflow / underflow vulnerability in the Primetime TVSDK that supports customizing ad information. Successful exploitation could lead to arbitrary code execution.
No detection rules found.
No public exploits indexed.
Unit42
Palo Alto Networks Unit 42 Vulnerability Research March 2017 Disclosures
blogs_unit42·2017-03-16·CVSS 8.8
CVE-2017-2997 [HIGH] Palo Alto Networks Unit 42 Vulnerability Research March 2017 Disclosures
As part of Unit 42’s ongoing threat research, we can now disclose that Palo Alto Networks Unit 42 researchers have discovered three code execution vulnerabilities affecting Adobe Flash (APSB17-07) that were addressed in Adobe’s monthly security update release:
1. CVE-2017-2997: Tao Yan
2. CVE-2017-2998: Tao Yan
3. CVE-2017-2999: Tao Yan
For current customers with a Threat Prevention subscription, Palo Alto Networks has also released IPS signatures providing proactive protection from these vulnerabilities. Traps, Palo Alto Networks advanced endpoint solution, can block memory corruption based exploits of this nature.
Palo Alto Networks is a regular contributor to vulnerability research in Microsoft, Adobe, Apple, Google Android and other ecosystems. By proactively identifying these vulne
Unit42
Palo Alto Networks Unit 42 Vulnerability Research March 2017 Disclosures
blogs_unit42·2017-03-16·CVSS 8.8
CVE-2017-2997 [HIGH] Palo Alto Networks Unit 42 Vulnerability Research March 2017 Disclosures
Threat Research Center
Threat Research
Vulnerabilities
## Palo Alto Networks Unit 42 Vulnerability Research March 2017 Disclosures
Unit 42
Published: March 16, 2017
Threat Research
Vulnerabilities
Adobe Flash
As part of Unit 42’s ongoing threat research, we can now disclose that Palo Alto Networks Unit 42 researchers have discovered three code execution vulnerabilities affecting Adobe Flash ( APSB17-07 ) that were addressed in Adobe’s monthly security update release:
CVE-2017-2997 : Tao Yan
CVE-2017-2998 : Tao Yan
CVE-2017-2999 : Tao Yan
For current customers with a Threat Prevention subscription, Palo Alto Networks has also released IPS signatures providing proactive protection from these vulnerabilities. Traps, Palo Alto Networks advanced endpoint solution, can block memor
Zscaler
Zscaler discovers Flash Player Vulnerabilities | 03-14-2017
blogs_zscaler·CVSS 8.8
[HIGH] Zscaler discovers Flash Player Vulnerabilities | 03-14-2017
Provide users with seamless, secure, reliable access to applications and data.
Build and run secure cloud apps, enable zero trust cloud connectivity, and protect workloads from data center to cloud.
Provide zero trust connectivity for IoT and OT devices and secure remote access to OT systems.
Provide zero trust site-to-site connectivity and reliable access to B2B apps for partners.
Industry Report
Zscaler: A Leader in the 2025 Gartner® Magic Quadrant™ for Security Service Edge (SSE)
USE CASES
INDUSTRY & MARKET SOLUTIONS
PARTNERS
TECHNOLOGY PARTNERS
Resource Center
Events & Trainings
Security Research & Services
Tools
Community & Support
CXO REVOLUTIONARIES
Amplifying the voices of real-world digital and zero trust pioneers
Discover how it began and where it’s going
Meet o
Bugzilla
CVE-2017-15395 chromium-browser: null pointer dereference in imagecapture
bugzilla·2017-10-18·CVSS 6.5
CVE-2017-15395 [MEDIUM] CVE-2017-15395 chromium-browser: null pointer dereference in imagecapture
CVE-2017-15395 chromium-browser: null pointer dereference in imagecapture
A null pointer dereference flaw was found in the ImageCapture component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=759457
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-5124 chromium-browser: uxss with mhtml
bugzilla·2017-10-18·CVSS 6.1
CVE-2017-5124 [MEDIUM] CVE-2017-5124 chromium-browser: uxss with mhtml
CVE-2017-5124 chromium-browser: uxss with mhtml
The following flaw was identified in the Chromium browser: uxss with mhtml.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=762930
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-5129 chromium-browser: use after free in webaudio
bugzilla·2017-10-18·CVSS 8.8
CVE-2017-5129 [HIGH] CVE-2017-5129 chromium-browser: use after free in webaudio
CVE-2017-5129 chromium-browser: use after free in webaudio
An use after free flaw was found in the WebAudio component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=765495
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-5125 chromium-browser: heap overflow in skia
bugzilla·2017-10-18·CVSS 8.8
CVE-2017-5125 [HIGH] CVE-2017-5125 chromium-browser: heap overflow in skia
CVE-2017-5125 chromium-browser: heap overflow in skia
A heap overflow flaw was found in the Skia component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=749147
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-15386 chromium-browser: ui spoofing in blink
bugzilla·2017-10-18·CVSS 6.5
CVE-2017-15386 [MEDIUM] CVE-2017-15386 chromium-browser: ui spoofing in blink
CVE-2017-15386 chromium-browser: ui spoofing in blink
An ui spoofing flaw was found in the Blink component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=752003
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-5127 chromium-browser: use after free in pdfium
bugzilla·2017-10-18·CVSS 8.8
CVE-2017-5127 [HIGH] CVE-2017-5127 chromium-browser: use after free in pdfium
CVE-2017-5127 chromium-browser: use after free in pdfium
An use after free flaw was found in the PDFium component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=765384
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-5133 chromium-browser: out of bounds write in skia
bugzilla·2017-10-18·CVSS 8.8
CVE-2017-5133 [HIGH] CVE-2017-5133 chromium-browser: out of bounds write in skia
CVE-2017-5133 chromium-browser: out of bounds write in skia
An out of bounds write flaw was found in the Skia component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=762106
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-5126 chromium-browser: use after free in pdfium
bugzilla·2017-10-18·CVSS 8.8
CVE-2017-5126 [HIGH] CVE-2017-5126 chromium-browser: use after free in pdfium
CVE-2017-5126 chromium-browser: use after free in pdfium
An use after free flaw was found in the PDFium component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=760455
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-15390 chromium-browser: url spoofing in omnibox
bugzilla·2017-10-18·CVSS 6.5
CVE-2017-15390 [MEDIUM] CVE-2017-15390 chromium-browser: url spoofing in omnibox
CVE-2017-15390 chromium-browser: url spoofing in omnibox
An url spoofing flaw was found in the OmniBox component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=750239
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-5132 chromium-browser: incorrect stack manipulation in webassembly
bugzilla·2017-10-18·CVSS 8.8
CVE-2017-5132 [HIGH] CVE-2017-5132 chromium-browser: incorrect stack manipulation in webassembly
CVE-2017-5132 chromium-browser: incorrect stack manipulation in webassembly
An incorrect stack manipulation flaw was found in the WebAssembly component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=718858
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-15387 chromium-browser: content security bypass
bugzilla·2017-10-18·CVSS 8.8
CVE-2017-15387 [HIGH] CVE-2017-15387 chromium-browser: content security bypass
CVE-2017-15387 chromium-browser: content security bypass
The following flaw was identified in the Chromium browser: content security bypass.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=756040
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-5130 chromium-browser: heap overflow in libxml2
bugzilla·2017-10-18·CVSS 8.8
CVE-2017-5130 [HIGH] CVE-2017-5130 chromium-browser: heap overflow in libxml2
CVE-2017-5130 chromium-browser: heap overflow in libxml2
A heap overflow flaw was found in the libxml2 component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=722079
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
---
The affected function xmlMemoryStrdup() is a debug-only function that should never be called in production builds. The only exception is xmllint when invoked with --maxmem. The same issue applies to
Bugzilla
CVE-2017-15392 chromium-browser: incorrect registry key handling in platformintegration
bugzilla·2017-10-18·CVSS 4.3
CVE-2017-15392 [MEDIUM] CVE-2017-15392 chromium-browser: incorrect registry key handling in platformintegration
CVE-2017-15392 chromium-browser: incorrect registry key handling in platformintegration
An incorrect registry key handling flaw was found in the PlatformIntegration component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=714401
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-15391 chromium-browser: extension limitation bypass in extensions
bugzilla·2017-10-18·CVSS 6.5
CVE-2017-15391 [MEDIUM] CVE-2017-15391 chromium-browser: extension limitation bypass in extensions
CVE-2017-15391 chromium-browser: extension limitation bypass in extensions
An extension limitation bypass flaw was found in the Extensions component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=598265
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-15388 chromium-browser: out of bounds read in skia
bugzilla·2017-10-18·CVSS 8.8
CVE-2017-15388 [HIGH] CVE-2017-15388 chromium-browser: out of bounds read in skia
CVE-2017-15388 chromium-browser: out of bounds read in skia
An out of bounds read flaw was found in the Skia component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=756563
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-5128 chromium-browser: heap overflow in webgl
bugzilla·2017-10-18·CVSS 8.8
CVE-2017-5128 [HIGH] CVE-2017-5128 chromium-browser: heap overflow in webgl
CVE-2017-5128 chromium-browser: heap overflow in webgl
A heap overflow flaw was found in the WebGL component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=765469
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-15393 chromium-browser: referrer leak in devtools
bugzilla·2017-10-18·CVSS 8.8
CVE-2017-15393 [HIGH] CVE-2017-15393 chromium-browser: referrer leak in devtools
CVE-2017-15393 chromium-browser: referrer leak in devtools
A referrer leak flaw was found in the Devtools component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=732751
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-5131 chromium-browser: out of bounds write in skia
bugzilla·2017-10-18·CVSS 8.8
CVE-2017-5131 [HIGH] CVE-2017-5131 chromium-browser: out of bounds write in skia
CVE-2017-5131 chromium-browser: out of bounds write in skia
An out of bounds write flaw was found in the Skia component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=744109
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-15394 chromium-browser: url spoofing in extensions ui
bugzilla·2017-10-18·CVSS 6.5
CVE-2017-15394 [MEDIUM] CVE-2017-15394 chromium-browser: url spoofing in extensions ui
CVE-2017-15394 chromium-browser: url spoofing in extensions ui
An url spoofing flaw was found in the extensions UI component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=745580
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-15389 chromium-browser: url spoofing in omnibox
bugzilla·2017-10-18·CVSS 6.5
CVE-2017-15389 [MEDIUM] CVE-2017-15389 chromium-browser: url spoofing in omnibox
CVE-2017-15389 chromium-browser: url spoofing in omnibox
An url spoofing flaw was found in the OmniBox component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=739621
External References:
https://chromereleases.googleblog.com/2017/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1503551]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2017:2997 https://access.redhat.com/errata/RHSA-2017:2997
Bugzilla
CVE-2017-2994 CVE-2017-2997 CVE-2017-2998 CVE-2017-2999 CVE-2017-3000 CVE-2017-3001 CVE-2017-3002 CVE-2017-3003 flash-plugin: multiple code execution issues fixed in APSB17-07
bugzilla·2017-03-14·CVSS 8.8
CVE-2017-2994 [HIGH] CVE-2017-2994 CVE-2017-2997 CVE-2017-2998 CVE-2017-2999 CVE-2017-3000 CVE-2017-3001 CVE-2017-3002 CVE-2017-3003 flash-plugin: multiple code execution issues fixed in APSB17-07
CVE-2017-2994 CVE-2017-2997 CVE-2017-2998 CVE-2017-2999 CVE-2017-3000 CVE-2017-3001 CVE-2017-3002 CVE-2017-3003 flash-plugin: multiple code execution issues fixed in APSB17-07
Adobe Security Bulletin APSB17-07 for Adobe Flash Player describes multiple flaws that can possibly lead to code execution when Flash Player is used to play a specially crafted SWF file.
Quoting from the APSB17-07:
These updates resolve a buffer overflow vulnerability that could lead to code execution (CVE-2017-2997).
These updates resolve memory corruption vulnerabilities that could lead to code execution (CVE-2017-2998, CVE-2017-2999).
These updates resolve a random number generator vulnerability used for constant blinding that could lead to information disclosure (CVE-2017-3000).
These updates resolve use-af
http://rhn.redhat.com/errata/RHSA-2017-0526.htmlhttp://www.securityfocus.com/bid/96860http://www.securitytracker.com/id/1037994https://helpx.adobe.com/security/products/flash-player/apsb17-07.htmlhttps://security.gentoo.org/glsa/201703-02http://rhn.redhat.com/errata/RHSA-2017-0526.htmlhttp://www.securityfocus.com/bid/96860http://www.securitytracker.com/id/1037994https://helpx.adobe.com/security/products/flash-player/apsb17-07.htmlhttps://security.gentoo.org/glsa/201703-02
2017-03-14
Published