ID:745 - Exploit for Heap-based buffer overflow in Adobe Flash Player and Adobe Flash Player for Linux - CVE-2017-2935
Published: March 18, 2020
Adobe Flash Player
Adobe Flash Player for Linux
Link to public exploit:
Vulnerability description
The vulnerability exists due to boundary error when processing AVC header slicing within .swf files. A remote attacker can create a specially crafted. flv file, trick the victim into opening it using Flash Player, cause heap-based buffer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.