SUSE-SU-2015:0491-1
Dashboard / Vulnerabilities / SUSE-SU-2015:0491-1
SUSE-SU-2015:0491-1
Summary: Security update for flash-player
Details: Adobe Flash Player was updated to 11.2.202.451 (bsc#922033). These security issues were fixed: - Memory corruption vulnerabilities that could lead to code execution (CVE-2015-0332, CVE-2015-0333, CVE-2015-0335, CVE-2015-0339). - Type confusion vulnerabilities that could lead to code execution (CVE-2015-0334, CVE-2015-0336). - A vulnerability that could lead to a cross-domain policy bypass (CVE-2015-0337). - A vulnerability that could lead to a file upload restriction bypass (CVE-2015-0340). - An integer overflow vulnerability that could lead to code execution (CVE-2015-0338). - Use-after-free vulnerabilities that could lead to code execution (CVE-2015-0341, CVE-2015-0342).
References: https://www.suse.com/support/update/announcement/2015/suse-su-20150491-1/, https://bugzilla.suse.com/922033, https://www.suse.com/security/cve/CVE-2015-0332, https://www.suse.com/security/cve/CVE-2015-0333, https://www.suse.com/security/cve/CVE-2015-0334, https://www.suse.com/security/cve/CVE-2015-0335, https://www.suse.com/security/cve/CVE-2015-0336, https://www.suse.com/security/cve/CVE-2015-0337, https://www.suse.com/security/cve/CVE-2015-0338, https://www.suse.com/security/cve/CVE-2015-0339, https://www.suse.com/security/cve/CVE-2015-0340, https://www.suse.com/security/cve/CVE-2015-0341, https://www.suse.com/security/cve/CVE-2015-0342
Affected packages
Package
Name: flash-player
Purl: pkg:rpm/suse/flash-player&distro=SUSE%20Linux%20Enterprise%20Desktop%2012
Affected ranges
Type: ECOSYSTEM
Events:
