Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2015:2401-1

Опубликовано: 30 дек. 2015
Источник: suse-cvrf

Описание

Security update for flash-player

This update for flash-player fixes the following issues:

  • CVE-2015-8644: Type confusion vulnerability that could lead to code execution .
  • CVE-2015-8651: Integer overflow vulnerability that could lead to code execution.
  • CVE-2015-8634, CVE-2015-8635, CVE-2015-8638, CVE-2015-8639, CVE-2015-8640, CVE-2015-8641, CVE-2015-8642, CVE-2015-8643, CVE-2015-8646, CVE-2015-8647, CVE-2015-8648, CVE-2015-8649, CVE-2015-8650: Use-after-free vulnerabilities that could lead to code execution.
  • CVE-2015-8459, CVE-2015-8460, CVE-2015-8636, CVE-2015-8645: Memory corruption vulnerabilities that could lead to code execution.

Список пакетов

SUSE Linux Enterprise Desktop 12
flash-player-11.2.202.559-117.1
flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1
flash-player-11.2.202.559-117.1
flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Workstation Extension 12
flash-player-11.2.202.559-117.1
flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Workstation Extension 12 SP1
flash-player-11.2.202.559-117.1
flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-8460, CVE-2015-8636, and CVE-2015-8645.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-8459, CVE-2015-8636, and CVE-2015-8645.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-8635, CVE-2015-8638, CVE-2015-8639, CVE-2015-8640, CVE-2015-8641, CVE-2015-8642, CVE-2015-8643, CVE-2015-8646, CVE-2015-8647, CVE-2015-8648, CVE-2015-8649, and CVE-2015-8650.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-8634, CVE-2015-8638, CVE-2015-8639, CVE-2015-8640, CVE-2015-8641, CVE-2015-8642, CVE-2015-8643, CVE-2015-8646, CVE-2015-8647, CVE-2015-8648, CVE-2015-8649, and CVE-2015-8650.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-8459, CVE-2015-8460, and CVE-2015-8645.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-8634, CVE-2015-8635, CVE-2015-8639, CVE-2015-8640, CVE-2015-8641, CVE-2015-8642, CVE-2015-8643, CVE-2015-8646, CVE-2015-8647, CVE-2015-8648, CVE-2015-8649, and CVE-2015-8650.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-8634, CVE-2015-8635, CVE-2015-8638, CVE-2015-8640, CVE-2015-8641, CVE-2015-8642, CVE-2015-8643, CVE-2015-8646, CVE-2015-8647, CVE-2015-8648, CVE-2015-8649, and CVE-2015-8650.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-8634, CVE-2015-8635, CVE-2015-8638, CVE-2015-8639, CVE-2015-8641, CVE-2015-8642, CVE-2015-8643, CVE-2015-8646, CVE-2015-8647, CVE-2015-8648, CVE-2015-8649, and CVE-2015-8650.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-8634, CVE-2015-8635, CVE-2015-8638, CVE-2015-8639, CVE-2015-8640, CVE-2015-8642, CVE-2015-8643, CVE-2015-8646, CVE-2015-8647, CVE-2015-8648, CVE-2015-8649, and CVE-2015-8650.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-8634, CVE-2015-8635, CVE-2015-8638, CVE-2015-8639, CVE-2015-8640, CVE-2015-8641, CVE-2015-8643, CVE-2015-8646, CVE-2015-8647, CVE-2015-8648, CVE-2015-8649, and CVE-2015-8650.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-8634, CVE-2015-8635, CVE-2015-8638, CVE-2015-8639, CVE-2015-8640, CVE-2015-8641, CVE-2015-8642, CVE-2015-8646, CVE-2015-8647, CVE-2015-8648, CVE-2015-8649, and CVE-2015-8650.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allow attackers to execute arbitrary code by leveraging an unspecified "type confusion."


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-8459, CVE-2015-8460, and CVE-2015-8636.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-8634, CVE-2015-8635, CVE-2015-8638, CVE-2015-8639, CVE-2015-8640, CVE-2015-8641, CVE-2015-8642, CVE-2015-8643, CVE-2015-8647, CVE-2015-8648, CVE-2015-8649, and CVE-2015-8650.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-8634, CVE-2015-8635, CVE-2015-8638, CVE-2015-8639, CVE-2015-8640, CVE-2015-8641, CVE-2015-8642, CVE-2015-8643, CVE-2015-8646, CVE-2015-8648, CVE-2015-8649, and CVE-2015-8650.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-8634, CVE-2015-8635, CVE-2015-8638, CVE-2015-8639, CVE-2015-8640, CVE-2015-8641, CVE-2015-8642, CVE-2015-8643, CVE-2015-8646, CVE-2015-8647, CVE-2015-8649, and CVE-2015-8650.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-8634, CVE-2015-8635, CVE-2015-8638, CVE-2015-8639, CVE-2015-8640, CVE-2015-8641, CVE-2015-8642, CVE-2015-8643, CVE-2015-8646, CVE-2015-8647, CVE-2015-8648, and CVE-2015-8650.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-8634, CVE-2015-8635, CVE-2015-8638, CVE-2015-8639, CVE-2015-8640, CVE-2015-8641, CVE-2015-8642, CVE-2015-8643, CVE-2015-8646, CVE-2015-8647, CVE-2015-8648, and CVE-2015-8649.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки

Описание

Integer overflow in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.559-117.1
SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.559-117.1

Ссылки