Vulnerability Name:

CVE-2017-2927 (CCN-120332)

Assigned:2016-12-02
Published:2017-01-10
Updated:2023-01-27
Summary:
CVSS v3 Severity:8.8 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H)
7.7 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): Required
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
8.8 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H)
7.7 High (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): Required
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:9.3 High (CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
9.0 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2017-2927

Source: CCN
Type: RHSA-2017-0057
Critical: flash-plugin security update

Source: psirt@adobe.com
Type: Third Party Advisory
psirt@adobe.com

Source: CCN
Type: BID-95347
Adobe Flash Player APSB17-02 Multiple Heap Buffer Overflow Vulnerabilities

Source: psirt@adobe.com
Type: Broken Link, Third Party Advisory, VDB Entry
psirt@adobe.com

Source: psirt@adobe.com
Type: Broken Link, Third Party Advisory, VDB Entry
psirt@adobe.com

Source: XF
Type: UNKNOWN
adobe-flash-cve20172927-bo(120332)

Source: CCN
Type: Adobe Security Bulletin APSB17-02
Security updates available for Adobe Flash Player

Source: psirt@adobe.com
Type: Patch, Vendor Advisory
psirt@adobe.com

Source: psirt@adobe.com
Type: Third Party Advisory
psirt@adobe.com

Oval Definitions
Definition IDClassTitleLast Modified
oval:org.opensuse.security:def:20172927
V
CVE-2017-2927
2022-05-20
oval:org.opensuse.security:def:55935
P
Security update for MozillaFirefox (Important)
2021-08-17
oval:org.opensuse.security:def:47313
P
libXext6-1.3.2-3.60 on GA media (Moderate)
2021-08-16
oval:org.opensuse.security:def:47072
P
libruby2_1-2_1-2.1.2-12.3 on GA media (Moderate)
2021-08-16
oval:org.opensuse.security:def:47384
P
libnm-glib-vpn1-1.0.12-12.4 on GA media (Moderate)
2021-08-16
oval:org.opensuse.security:def:47156
P
squidGuard-1.4-23.1 on GA media (Moderate)
2021-08-16
oval:org.opensuse.security:def:48022
P
gnome-keyring-3.20.0-28.3.18 on GA media (Moderate)
2021-08-16
oval:org.opensuse.security:def:48076
P
libXfixes3-32bit-5.0.1-7.1 on GA media (Moderate)
2021-08-16
oval:org.opensuse.security:def:47218
P
bzip2-1.0.6-29.2 on GA media (Moderate)
2021-08-16
oval:org.opensuse.security:def:47282
P
guile-2.0.9-8.3 on GA media (Moderate)
2021-08-16
oval:org.opensuse.security:def:11993
P
pidgin-otr-4.0.0-11.6 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:11851
P
libQt5Concurrent5-5.6.1-11.7 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:12002
P
python-pyOpenSSL-16.0.0-2.3.2 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:11926
P
libpolkit0-0.113-5.6.1 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:12015
P
shim-0.9-20.3 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:11951
P
libtasn1-3.7-11.1 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:12653
P
libxml2-2-2.9.4-46.15.1 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:11702
P
python-cupshelpers-1.4.5-1.5 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:12675
P
openssh-7.2p2-74.25.1 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:46488
P
libjavascriptcoregtk-3_0-0-2.2.7-3.26 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:11724
P
syslog-service-2.0-778.1 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:46620
P
automake-1.13.4-4.56 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:11770
P
bzip2-1.0.6-29.2 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:11694
P
perl-XML-LibXML-2.0019-5.3 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:46711
P
libXvMC1-1.0.8-3.57 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:11817
P
glibc-2.22-49.16 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:46858
P
tigervnc-1.4.3-7.2 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:11832
P
hplip-3.14.6-3.14 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:56009
P
Security update for libnettle (Important)
2021-04-28
oval:org.opensuse.security:def:24667
P
Security update for java-1_7_0-openjdk (Important)
2020-12-01
oval:org.opensuse.security:def:53158
P
Security update for salt (Critical)
2020-12-01
oval:org.opensuse.security:def:24468
P
Security update for glib2 (Important)
2020-12-01
oval:org.opensuse.security:def:24748
P
Security update for python3 (Important)
2020-12-01
oval:org.opensuse.security:def:53298
P
Security update for squid (Important)
2020-12-01
oval:org.opensuse.security:def:46163
P
Security update for libxslt (Moderate)
2020-12-01
oval:org.opensuse.security:def:24804
P
Security update for bluez (Important)
2020-12-01
oval:org.opensuse.security:def:53536
P
Security update for the Linux Kernel (Important)
2020-12-01
oval:org.opensuse.security:def:46176
P
Security update for python3 (Important)
2020-12-01
oval:org.opensuse.security:def:25177
P
Security update for mariadb-connector-c (Important)
2020-12-01
oval:org.opensuse.security:def:53135
P
Security update for libxml2 (Moderate)
2020-12-01
oval:org.opensuse.security:def:24887
P
Security update for cups (Important)
2020-12-01
oval:org.opensuse.security:def:53709
P
Security update for zeromq (Moderate)
2020-12-01
oval:org.opensuse.security:def:46296
P
Security update for the Linux Kernel (Live Patch 28 for SLE 12 SP3) (Important)
2020-12-01
oval:org.opensuse.security:def:25191
P
Security update for the Linux Kernel (Important)
2020-12-01
oval:org.opensuse.security:def:54466
P
file on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:25037
P
Security update for MozillaFirefox (Important)
2020-12-01
oval:org.opensuse.security:def:53815
P
Security update for MozillaThunderbird (Important)
2020-12-01
oval:org.opensuse.security:def:25235
P
Security update for java-1_7_1-ibm (Important)
2020-12-01
oval:org.opensuse.security:def:54540
P
libecpg6 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:46162
P
Security update for mozilla-nspr, mozilla-nss (Moderate)
2020-12-01
oval:org.opensuse.security:def:25090
P
Security update for git (Important)
2020-12-01
oval:org.opensuse.security:def:53981
P
gvim on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:25873
P
Security update for libcares2 (Low)
2020-12-01
oval:org.opensuse.security:def:54578
P
libneon27 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:24478
P
Security update for libxslt (Moderate)
2020-12-01
oval:org.opensuse.security:def:54266
P
libgc1 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:25908
P
Security update for flash-player (Important)
2020-12-01
oval:org.opensuse.security:def:54659
P
puppet on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:24541
P
Security update for sudo (Important)
2020-12-01
oval:org.opensuse.security:def:53136
P
Security update for samba (Important)
2020-12-01
oval:org.opensuse.security:def:54374
P
rpm-32bit on GA media (Moderate)
2020-12-01
oval:org.cisecurity:def:1710
V
Vulnerability in Adobe Flash Player versions 24.0.0.186 and earlier - CVE-2017-2927
2017-02-10
oval:com.ubuntu.xenial:def:201729270000000
V
CVE-2017-2927 on Ubuntu 16.04 LTS (xenial) - medium.
2017-01-11
oval:org.opensuse.security:def:78643
P
Security update for flash-player (Important)
2017-01-11
oval:com.ubuntu.precise:def:20172927000
V
CVE-2017-2927 on Ubuntu 12.04 LTS (precise) - medium.
2017-01-10
oval:com.ubuntu.trusty:def:20172927000
V
CVE-2017-2927 on Ubuntu 14.04 LTS (trusty) - medium.
2017-01-10
oval:com.ubuntu.xenial:def:20172927000
V
CVE-2017-2927 on Ubuntu 16.04 LTS (xenial) - medium.
2017-01-10
BACK