VYPR
Critical severity9.8NVD Advisory· Published Jun 20, 2017· Updated May 13, 2026

CVE-2017-3075

CVE-2017-3075

Description

Adobe Flash Player versions 25.0.0.171 and earlier have an exploitable use after free vulnerability when manipulating the ActionsScript 2 XML class. Successful exploitation could lead to arbitrary code execution.

Affected products

4
  • cpe:2.3:a:adobe:flash_player:*:*:*:*:*:internet_explorer:*:*+ 3 more
    • cpe:2.3:a:adobe:flash_player:*:*:*:*:*:internet_explorer:*:*range: <=25.0.0.171
    • cpe:2.3:a:adobe:flash_player:*:*:*:*:*:chrome:*:*range: <=25.0.0.171
    • cpe:2.3:a:adobe:flash_player:*:*:*:*:*:*:*:*range: <=25.0.0.171
    • cpe:2.3:a:adobe:flash_player:*:*:*:*:*:edge:*:*range: <=25.0.0.171

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.