CVE-2017-3078
published 2017-06-20CVE-2017-3078: Adobe Flash Player versions 25.0.0.171 and earlier have an exploitable memory corruption vulnerability in the Adobe Texture Format (ATF) module. Successful…
PriorityP269critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EXPLOIT
EPSS
30.89%
98.1th percentile
Adobe Flash Player versions 25.0.0.171 and earlier have an exploitable memory corruption vulnerability in the Adobe Texture Format (ATF) module. Successful exploitation could lead to arbitrary code execution.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | flash_player | <= 25.0.0.171 | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Look for SWF files loading ATF-format texture files (e.g. .atf extension) via URL query parameters, which is the delivery mechanism for this exploit (LoadImage.swf?img=atffree.png pattern). ↗
- →The vulnerability is triggered in the Adobe Texture Format (ATF) parser inside Flash Player; heap corruption occurs during ATF file parsing — monitor Flash Player process for heap corruption crashes or abnormal memory allocation patterns when processing ATF assets. ↗
- →Affected versions are Adobe Flash Player 25.0.0.171 and earlier; flag or block execution of Flash Player at or below this version string. ↗
- ·The reproduction URL uses localhost (127.0.0.1) as the PoC server; in real-world attacks the SWF and ATF payload would be hosted on an attacker-controlled remote server, so detection rules should not be scoped to loopback addresses only. ↗
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
osv9.8CRITICAL
vendor_redhat9.8CRITICAL
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-xw35-x29w-q9gx: Adobe Flash Player versions 25
ghsa_unreviewed·2022-05-14
CVE-2017-3078 [CRITICAL] CWE-119 GHSA-xw35-x29w-q9gx: Adobe Flash Player versions 25
Adobe Flash Player versions 25.0.0.171 and earlier have an exploitable memory corruption vulnerability in the Adobe Texture Format (ATF) module. Successful exploitation could lead to arbitrary code execution.
OSV
CVE-2017-3078: Adobe Flash Player versions 25
osv·2017-06-20·CVSS 9.8
CVE-2017-3078 [CRITICAL] CVE-2017-3078: Adobe Flash Player versions 25
Adobe Flash Player versions 25.0.0.171 and earlier have an exploitable memory corruption vulnerability in the Adobe Texture Format (ATF) module. Successful exploitation could lead to arbitrary code execution.
Red Hat
kernel: erofs: fix race in z_erofs_get_gbuf()
vendor_redhat·2024-08-17·CVSS 4.7
CVE-2024-42300 [MEDIUM] CWE-362 kernel: erofs: fix race in z_erofs_get_gbuf()
kernel: erofs: fix race in z_erofs_get_gbuf()
In the Linux kernel, the following vulnerability has been resolved:
erofs: fix race in z_erofs_get_gbuf()
In z_erofs_get_gbuf(), the current task may be migrated to another
CPU between `z_erofs_gbuf_id()` and `spin_lock(&gbuf->lock)`.
Therefore, z_erofs_put_gbuf() will trigger the following issue
which was found by stress test:
[772156.434168] kernel BUG at fs/erofs/zutil.c:58!
..
[772156.435007]
[772156.439237] CPU: 0 PID: 3078 Comm: stress Kdump: loaded Tainted: G E 6.10.0-rc7+ #2
[772156.439239] Hardware name: Alibaba Cloud Alibaba Cloud ECS, BIOS 1.0.0 01/01/2017
[772156.439241] pstate: 83400005 (Nzcv daif +PAN -UAO +TCO +DIT -SSBS BTYPE=--)
[772156.439243] pc : z_erofs_put_gbuf+0x64/0x70 [erofs]
[772156.439252] lr : z_erofs_lz4_decompress
Red Hat
flash-plugin: multiple code execution issues fixed in APSB17-17
vendor_redhat·2017-06-13·CVSS 9.8
CVE-2017-3078 [CRITICAL] flash-plugin: multiple code execution issues fixed in APSB17-17
flash-plugin: multiple code execution issues fixed in APSB17-17
Adobe Flash Player versions 25.0.0.171 and earlier have an exploitable memory corruption vulnerability in the Adobe Texture Format (ATF) module. Successful exploitation could lead to arbitrary code execution.
No detection rules found.
http://www.securityfocus.com/bid/99025http://www.securitytracker.com/id/1038655https://access.redhat.com/errata/RHSA-2017:1439https://helpx.adobe.com/security/products/flash-player/apsb17-17.htmlhttps://security.gentoo.org/glsa/201707-15https://www.exploit-db.com/exploits/42249/http://www.securityfocus.com/bid/99025http://www.securitytracker.com/id/1038655https://access.redhat.com/errata/RHSA-2017:1439https://helpx.adobe.com/security/products/flash-player/apsb17-17.htmlhttps://security.gentoo.org/glsa/201707-15https://www.exploit-db.com/exploits/42249/
2017-06-20
Published