Adobe Flash Player versions 25.0.0.171 and earlier have an exploitable use after free vulnerability during internal computation caused by multiple display object mask manipulations. Successful exploitation could lead to arbitrary code execution.
https://security.gentoo.org/glsa/201707-15
https://access.redhat.com/errata/RHSA-2017:1439
http://www.securityfocus.com/bid/99023
https://helpx.adobe.com/security/products/flash-player/apsb17-17.html
http://www.securitytracker.com/id/1038655
Source: Mitre, NVD
Published: 2017-06-20
Updated: 2025-04-20
Base Score: 10
Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C
Severity: Critical
Base Score: 9.8
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS: 0.01682