Adobe Flash - Info Leak in Image Inflation
Author: Google Security Research
type: dos
platform: multiple
port:
date_added: 2018-04-24
date_updated: 2018-04-24
verified: 1
codes: CVE-2018-4934
tags:
aliases:
screenshot_url:
application_url:
The attached image causes an info leak in image inflation. It occasionally crashes when rendered, otherwise it displays uninitialized memory as pixels.
To reproduce, put the attached images on a webserver and vist: http://127.0.0.1?img=inflate.png.
Proof of Concept:
https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/44528.zip