Oval Definition:oval:org.cisecurity:def:1910
Revision Date:2017-03-03Version:4
Title:Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable use after free vulnerability - CVE-2017-2985
Description:Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable use after free vulnerability in the ActionScript 3 BitmapData class. Successful exploitation could lead to arbitrary code execution.
Family:windowsClass:vulnerability
Status:DRAFTReference(s):CVE-2017-2985
Platform(s):Microsoft Windows 10
Microsoft Windows 7
Microsoft Windows 8
Microsoft Windows 8.1
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2016
Microsoft Windows Vista
Product(s):ActiveX Control
Adobe Flash Player
Pepper Flash
Definition Synopsis
  • Adobe Flash Player is installed + version
  • Adobe Flash Player is installed
  • AND Check if Adobe Flash Player version is less than 24.0.0.221
  • OR Pepper Flash for Google Chrome version
  • Google Chrome is installed
  • AND Check if Pepper Flash for Google Chrome version is less than 24.0.0.221
  • OR ActiveX Control is installed + Flash*.ocx version
  • ActiveX Control is installed
  • AND Check if Flash*.ocx version is less than 24.0.0.221
  • BACK