Mageia 2019-0149: flash-player-plugin security update
Summary
An out-of-bounds read that leads to information disclosure. (CVE-2019-7108)
A use after free that leads to arbitrary code execution. (CVE-2019-7096)
References
- https://bugs.mageia.org/show_bug.cgi?id=24643
- - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-7096
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-7108
Resolution
MGASA-2019-0149 - Updated flash-player-plugin packages fix security vulnerability
SRPMS
- 6/nonfree/flash-player-plugin-32.0.0.171-1.mga6.nonfree