RULE(RULE ID:321641)

Rule General Information
Release Date: 2019-04-09
Rule Name: Adobe Flash FLV parsing OOB Memory Access Vulnerability (CVE-2017-2986)
Severity:
CVE ID:
CNNVD ID:
Rule Protection Details
Description: Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable heap overflow vulnerability in the Flash Video (FLV) codec. Successful exploitation could lead to arbitrary code execution.
Impact: A remote user can create content that, when loaded by the target user, will execute arbitrary code on the target user's system.
Affected OS: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others
Reference: SecurityFocusBID:96193
AdobeSecurityBulletins:apsb17-04
ExploitDB:41423
http://rhn.redhat.com/errata/RHSA-2017-0275.html
Solutions
Adobe has issued a fix on the official website. For more advisory, please visit:
https://helpx.adobe.com/security/products/flash-player/apsb17-04.html