CERT-In Vulnerability Note
CIVN-2017-0187
Vulnerability in Adobe Flash Player
Original Issue Date:December 15, 2017
Severity Rating: HIGH
Software Affected
- Adobe Flash Player 27.0.0.187 and prior for Desktop Runtime
- Adobe Flash Player 27.0.0.187 and prior for Google Chrome
- Adobe Flash Player 27.0.0.187 and prior for Microsoft Edge and Internet Explorer 11
Overview
This vulnerability has been reported in Adobe Flash Player which could allow a remote attacker to reset global settings preference file on the targeted system.
Description
This vulnerability is caused due to a logic error. A remote attacker could exploit this vulnerability through unspecified measures to reset global settings preference file on the targeted system.
Solution
Apply appropriate updates as mentioned in the
Adobe Security Bulletin APSB17-42
Vendor Information
Adobe
https://helpx.adobe.com/security/products/flash-player/apsb17-42.html
References
Adobe
https://helpx.adobe.com/security/products/flash-player/apsb17-42.html
SecurityTracker
http://securitytracker.com/id/1039988
CVE Name
CVE-2017-11305
Disclaimer
The information provided herein is on "as is" basis, without warranty of any kind.
Contact Information
Email: info@cert-in.org.in Phone: +91-11-24368572
Postal address
Indian Computer Emergency Response Team (CERT-In) Ministry of Electronics and Information Technology Government of India Electronics Niketan 6, CGO Complex, Lodhi Road, New Delhi - 110 003 India
|