Adobe Flash Player copyPixelsToByteArray Heap Buffer Overflow Exploit

This module exploits a heap-based buffer overflow in Adobe Flash Player. The bug is triggered by calling BitmapData.copyPixelsToByteArray() with a reference to a ByteArray that has its position property set very large, close to 2^32. This results in an integer overflow in 32-bit arithmetic and allows an attacker to take control of the target machine.
Exploit Type - Old
Exploits/Client Side
Exploit Platform
Exploit Type
Product Name