Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2015:1211-1

Опубликовано: 08 июл. 2015
Источник: suse-cvrf

Описание

Security update for flash-player

flash-player was updated to fix 35 security issues.

These security issues were fixed:

  • CVE-2015-3135, CVE-2015-4432, CVE-2015-5118: Heap buffer overflow vulnerabilities that could lead to code execution (bsc#937339).
  • CVE-2015-3117, CVE-2015-3123, CVE-2015-3130, CVE-2015-3133, CVE-2015-3134, CVE-2015-4431: Memory corruption vulnerabilities that could lead to code execution (bsc#937339).
  • CVE-2015-3126, CVE-2015-4429: Null pointer dereference issues (bsc#937339).
  • CVE-2015-3114: A security bypass vulnerability that could lead to information disclosure (bsc#937339).
  • CVE-2015-3119, CVE-2015-3120, CVE-2015-3121, CVE-2015-3122, CVE-2015-4433: Type confusion vulnerabilities that could lead to code execution (bsc#937339).
  • CVE-2015-3118, CVE-2015-3124, CVE-2015-5117, CVE-2015-3127, CVE-2015-3128, CVE-2015-3129, CVE-2015-3131, CVE-2015-3132, CVE-2015-3136, CVE-2015-3137, CVE-2015-4428, CVE-2015-4430, CVE-2015-5119: Use-after-free vulnerabilities that could lead to code execution (bsc#937339).
  • CVE-2014-0578, CVE-2015-3115, CVE-2015-3116, CVE-2015-3125, CVE-2015-5116: Vulnerabilities that could be exploited to bypass the same-origin-policy and lead to information disclosure (bsc#937339).

Список пакетов

SUSE Linux Enterprise Desktop 12
flash-player-11.2.202.481-93.1
flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12
flash-player-11.2.202.481-93.1
flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2015-3115, CVE-2015-3116, CVE-2015-3125, and CVE-2015-5116.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3116, CVE-2015-3125, and CVE-2015-5116.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3115, CVE-2015-3125, and CVE-2015-5116.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3123, CVE-2015-3130, CVE-2015-3133, CVE-2015-3134, and CVE-2015-4431.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3124, CVE-2015-3127, CVE-2015-3128, CVE-2015-3129, CVE-2015-3131, CVE-2015-3132, CVE-2015-3136, CVE-2015-3137, CVE-2015-4428, CVE-2015-4430, and CVE-2015-5117.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow attackers to execute arbitrary code by leveraging an unspecified "type confusion," a different vulnerability than CVE-2015-3120, CVE-2015-3121, CVE-2015-3122, and CVE-2015-4433.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow attackers to execute arbitrary code by leveraging an unspecified "type confusion," a different vulnerability than CVE-2015-3119, CVE-2015-3121, CVE-2015-3122, and CVE-2015-4433.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow attackers to execute arbitrary code by leveraging an unspecified "type confusion," a different vulnerability than CVE-2015-3119, CVE-2015-3120, CVE-2015-3122, and CVE-2015-4433.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow attackers to execute arbitrary code by leveraging an unspecified "type confusion," a different vulnerability than CVE-2015-3119, CVE-2015-3120, CVE-2015-3121, and CVE-2015-4433.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3117, CVE-2015-3130, CVE-2015-3133, CVE-2015-3134, and CVE-2015-4431.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3118, CVE-2015-3127, CVE-2015-3128, CVE-2015-3129, CVE-2015-3131, CVE-2015-3132, CVE-2015-3136, CVE-2015-3137, CVE-2015-4428, CVE-2015-4430, and CVE-2015-5117.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3115, CVE-2015-3116, and CVE-2015-5116.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow attackers to cause a denial of service (NULL pointer dereference) or possibly have unspecified other impact via unknown vectors, a different vulnerability than CVE-2015-4429.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3118, CVE-2015-3124, CVE-2015-3128, CVE-2015-3129, CVE-2015-3131, CVE-2015-3132, CVE-2015-3136, CVE-2015-3137, CVE-2015-4428, CVE-2015-4430, and CVE-2015-5117.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3118, CVE-2015-3124, CVE-2015-3127, CVE-2015-3129, CVE-2015-3131, CVE-2015-3132, CVE-2015-3136, CVE-2015-3137, CVE-2015-4428, CVE-2015-4430, and CVE-2015-5117.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3118, CVE-2015-3124, CVE-2015-3127, CVE-2015-3128, CVE-2015-3131, CVE-2015-3132, CVE-2015-3136, CVE-2015-3137, CVE-2015-4428, CVE-2015-4430, and CVE-2015-5117.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3117, CVE-2015-3123, CVE-2015-3133, CVE-2015-3134, and CVE-2015-4431.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3118, CVE-2015-3124, CVE-2015-3127, CVE-2015-3128, CVE-2015-3129, CVE-2015-3132, CVE-2015-3136, CVE-2015-3137, CVE-2015-4428, CVE-2015-4430, and CVE-2015-5117.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3118, CVE-2015-3124, CVE-2015-3127, CVE-2015-3128, CVE-2015-3129, CVE-2015-3131, CVE-2015-3136, CVE-2015-3137, CVE-2015-4428, CVE-2015-4430, and CVE-2015-5117.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3117, CVE-2015-3123, CVE-2015-3130, CVE-2015-3134, and CVE-2015-4431.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3117, CVE-2015-3123, CVE-2015-3130, CVE-2015-3133, and CVE-2015-4431.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Heap-based buffer overflow in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-4432 and CVE-2015-5118.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3118, CVE-2015-3124, CVE-2015-3127, CVE-2015-3128, CVE-2015-3129, CVE-2015-3131, CVE-2015-3132, CVE-2015-3137, CVE-2015-4428, CVE-2015-4430, and CVE-2015-5117.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3118, CVE-2015-3124, CVE-2015-3127, CVE-2015-3128, CVE-2015-3129, CVE-2015-3131, CVE-2015-3132, CVE-2015-3136, CVE-2015-4428, CVE-2015-4430, and CVE-2015-5117.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3118, CVE-2015-3124, CVE-2015-3127, CVE-2015-3128, CVE-2015-3129, CVE-2015-3131, CVE-2015-3132, CVE-2015-3136, CVE-2015-3137, CVE-2015-4430, and CVE-2015-5117.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow attackers to cause a denial of service (NULL pointer dereference) or possibly have unspecified other impact via unknown vectors, a different vulnerability than CVE-2015-3126.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3118, CVE-2015-3124, CVE-2015-3127, CVE-2015-3128, CVE-2015-3129, CVE-2015-3131, CVE-2015-3132, CVE-2015-3136, CVE-2015-3137, CVE-2015-4428, and CVE-2015-5117.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3117, CVE-2015-3123, CVE-2015-3130, CVE-2015-3133, and CVE-2015-3134.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Heap-based buffer overflow in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3135 and CVE-2015-5118.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow attackers to execute arbitrary code by leveraging an unspecified "type confusion," a different vulnerability than CVE-2015-3119, CVE-2015-3120, CVE-2015-3121, and CVE-2015-3122.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3115, CVE-2015-3116, and CVE-2015-3125.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3118, CVE-2015-3124, CVE-2015-3127, CVE-2015-3128, CVE-2015-3129, CVE-2015-3131, CVE-2015-3132, CVE-2015-3136, CVE-2015-3137, CVE-2015-4428, and CVE-2015-4430.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Heap-based buffer overflow in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3135 and CVE-2015-4432.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки

Описание

Use-after-free vulnerability in the ByteArray class in the ActionScript 3 (AS3) implementation in Adobe Flash Player 13.x through 13.0.0.296 and 14.x through 18.0.0.194 on Windows and OS X and 11.x through 11.2.202.468 on Linux allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted Flash content that overrides a valueOf function, as exploited in the wild in July 2015.


Затронутые продукты
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.481-93.1
SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.481-93.1

Ссылки