CVE-2017-3106: Adobe Flash Player
High severity, CVSS 8.8. EPSS: 22.3% chance of exploitation in the next 30 days.
Adobe Flash Player versions 26.0.0.137 and earlier have an exploitable type confusion vulnerability when parsing SWF files. Successful exploitation could lead to arbitrary code execution.
Affected products
- Adobe Flash Player: up to and including 26.0.0.137
- Adobe Flash Player Desktop Runtime: up to and including 26.0.0.137
- Red Hat Enterprise Linux: version 6.0 only
- Red Hat Enterprise Linux Desktop: version 6.0 only
- Red Hat Enterprise Linux Workstation: version 6.0 only
Published 2017-08-11. Last modified 2026-06-17.