~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
Candidate: CVE-2017-2999
PublicDate: 2017-03-14
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-2999
 https://helpx.adobe.com/security/products/flash-player/apsb17-07.html
Description:
 Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable
 memory corruption vulnerability in the Primetime TVSDK functionality
 related to hosting playback surface. Successful exploitation could lead to
 arbitrary code execution.
Ubuntu-Description:
Notes:
Bugs:
Priority: high
Discovered-by:
Assigned-to:

Patches_adobe-flashplugin:
upstream_adobe-flashplugin: needs-triage
precise_adobe-flashplugin: released (25.0.0.127ubuntu0.12.04.1)
trusty_adobe-flashplugin: released (25.0.0.127ubuntu0.14.04.1)
vivid/stable-phone-overlay_adobe-flashplugin: DNE
vivid/ubuntu-core_adobe-flashplugin: DNE
xenial_adobe-flashplugin: released (25.0.0.127ubuntu0.16.04.1)
yakkety_adobe-flashplugin: released (25.0.0.127ubuntu0.16.10.1)
devel_adobe-flashplugin: not-affected