Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2016:0400-1

Опубликовано: 10 фев. 2016
Источник: suse-cvrf

Описание

Security update for flash-player

This update for flash-player fixes the following issues:

  • Security update to 11.2.202.569 (bsc#965901):
    • APSB16-04, CVE-2016-0964, CVE-2016-0965, CVE-2016-0966, CVE-2016-0967, CVE-2016-0968, CVE-2016-0969, CVE-2016-0970, CVE-2016-0971, CVE-2016-0972, CVE-2016-0973, CVE-2016-0974, CVE-2016-0975, CVE-2016-0976, CVE-2016-0977, CVE-2016-0978, CVE-2016-0979, CVE-2016-0980, CVE-2016-0981, CVE-2016-0982, CVE-2016-0983, CVE-2016-0984, CVE-2016-0985

Список пакетов

SUSE Linux Enterprise Desktop 11 SP4
flash-player-11.2.202.569-0.35.1
flash-player-gnome-11.2.202.569-0.35.1
flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0965, CVE-2016-0966, CVE-2016-0967, CVE-2016-0968, CVE-2016-0969, CVE-2016-0970, CVE-2016-0972, CVE-2016-0976, CVE-2016-0977, CVE-2016-0978, CVE-2016-0979, CVE-2016-0980, and CVE-2016-0981.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0964, CVE-2016-0966, CVE-2016-0967, CVE-2016-0968, CVE-2016-0969, CVE-2016-0970, CVE-2016-0972, CVE-2016-0976, CVE-2016-0977, CVE-2016-0978, CVE-2016-0979, CVE-2016-0980, and CVE-2016-0981.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0964, CVE-2016-0965, CVE-2016-0967, CVE-2016-0968, CVE-2016-0969, CVE-2016-0970, CVE-2016-0972, CVE-2016-0976, CVE-2016-0977, CVE-2016-0978, CVE-2016-0979, CVE-2016-0980, and CVE-2016-0981.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0964, CVE-2016-0965, CVE-2016-0966, CVE-2016-0968, CVE-2016-0969, CVE-2016-0970, CVE-2016-0972, CVE-2016-0976, CVE-2016-0977, CVE-2016-0978, CVE-2016-0979, CVE-2016-0980, and CVE-2016-0981.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0964, CVE-2016-0965, CVE-2016-0966, CVE-2016-0967, CVE-2016-0969, CVE-2016-0970, CVE-2016-0972, CVE-2016-0976, CVE-2016-0977, CVE-2016-0978, CVE-2016-0979, CVE-2016-0980, and CVE-2016-0981.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0964, CVE-2016-0965, CVE-2016-0966, CVE-2016-0967, CVE-2016-0968, CVE-2016-0970, CVE-2016-0972, CVE-2016-0976, CVE-2016-0977, CVE-2016-0978, CVE-2016-0979, CVE-2016-0980, and CVE-2016-0981.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0964, CVE-2016-0965, CVE-2016-0966, CVE-2016-0967, CVE-2016-0968, CVE-2016-0969, CVE-2016-0972, CVE-2016-0976, CVE-2016-0977, CVE-2016-0978, CVE-2016-0979, CVE-2016-0980, and CVE-2016-0981.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Heap-based buffer overflow in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allows attackers to execute arbitrary code via unspecified vectors.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0964, CVE-2016-0965, CVE-2016-0966, CVE-2016-0967, CVE-2016-0968, CVE-2016-0969, CVE-2016-0970, CVE-2016-0976, CVE-2016-0977, CVE-2016-0978, CVE-2016-0979, CVE-2016-0980, and CVE-2016-0981.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Use-after-free vulnerability in the URLRequest object implementation in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allows attackers to execute arbitrary code via a URLLoader.load call, a different vulnerability than CVE-2016-0974, CVE-2016-0975, CVE-2016-0982, CVE-2016-0983, and CVE-2016-0984.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-0973, CVE-2016-0975, CVE-2016-0982, CVE-2016-0983, and CVE-2016-0984.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Use-after-free vulnerability in the instanceof function in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allows attackers to execute arbitrary code by leveraging improper reference handling, a different vulnerability than CVE-2016-0973, CVE-2016-0974, CVE-2016-0982, CVE-2016-0983, and CVE-2016-0984.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0964, CVE-2016-0965, CVE-2016-0966, CVE-2016-0967, CVE-2016-0968, CVE-2016-0969, CVE-2016-0970, CVE-2016-0972, CVE-2016-0977, CVE-2016-0978, CVE-2016-0979, CVE-2016-0980, and CVE-2016-0981.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0964, CVE-2016-0965, CVE-2016-0966, CVE-2016-0967, CVE-2016-0968, CVE-2016-0969, CVE-2016-0970, CVE-2016-0972, CVE-2016-0976, CVE-2016-0978, CVE-2016-0979, CVE-2016-0980, and CVE-2016-0981.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0964, CVE-2016-0965, CVE-2016-0966, CVE-2016-0967, CVE-2016-0968, CVE-2016-0969, CVE-2016-0970, CVE-2016-0972, CVE-2016-0976, CVE-2016-0977, CVE-2016-0979, CVE-2016-0980, and CVE-2016-0981.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0964, CVE-2016-0965, CVE-2016-0966, CVE-2016-0967, CVE-2016-0968, CVE-2016-0969, CVE-2016-0970, CVE-2016-0972, CVE-2016-0976, CVE-2016-0977, CVE-2016-0978, CVE-2016-0980, and CVE-2016-0981.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0964, CVE-2016-0965, CVE-2016-0966, CVE-2016-0967, CVE-2016-0968, CVE-2016-0969, CVE-2016-0970, CVE-2016-0972, CVE-2016-0976, CVE-2016-0977, CVE-2016-0978, CVE-2016-0979, and CVE-2016-0981.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0964, CVE-2016-0965, CVE-2016-0966, CVE-2016-0967, CVE-2016-0968, CVE-2016-0969, CVE-2016-0970, CVE-2016-0972, CVE-2016-0976, CVE-2016-0977, CVE-2016-0978, CVE-2016-0979, and CVE-2016-0980.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-0973, CVE-2016-0974, CVE-2016-0975, CVE-2016-0983, and CVE-2016-0984.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-0973, CVE-2016-0974, CVE-2016-0975, CVE-2016-0982, and CVE-2016-0984.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Use-after-free vulnerability in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-0973, CVE-2016-0974, CVE-2016-0975, CVE-2016-0982, and CVE-2016-0983.


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки

Описание

Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2.202.569 on Linux, Adobe AIR before 20.0.0.260, Adobe AIR SDK before 20.0.0.260, and Adobe AIR SDK & Compiler before 20.0.0.260 allow attackers to execute arbitrary code by leveraging an unspecified "type confusion."


Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP4:flash-player-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-gnome-11.2.202.569-0.35.1
SUSE Linux Enterprise Desktop 11 SP4:flash-player-kde4-11.2.202.569-0.35.1

Ссылки