SuSE: 2015:0493-1: critical: flash-player
Summary
flash-player has been updated to fix eleven security vulnerabilities:
* Memory corruption vulnerabilities that could have lead to code
execution (CVE-2016-0332, CVE-2015-0333, CVE-2015-0335,
CVE-2015-0339).
* Type confusion vulnerabilities that could have lead to code
execution (CVE-2015-0334, CVE-2015-0336).
* A vulnerability that could have lead to a cross-domain policy bypass
(CVE-2015-0337).
* A vulnerability that could have lead to a file upload restriction
bypass (CVE-2015-0340).
* An integer overflow vulnerability that could have lead to code
execution (CVE-2015-0338).
* Use-after-free vulnerabilities that could have lead to code
execution (CVE-2015-0341, CVE-2015-0342).
Security Issues:
* CVE-2015-0332
References
#922033
Cross- CVE-2015-0332 CVE-2015-0333 CVE-2015-0334
CVE-2015-0335 CVE-2015-0336 CVE-2015-0337
CVE-2015-0338 CVE-2015-0339 CVE-2015-0340
CVE-2015-0341 CVE-2015-0342
Affected Products:
SUSE Linux Enterprise Desktop 11 SP3
https://www.suse.com/security/cve/CVE-2015-0332.html
https://www.suse.com/security/cve/CVE-2015-0333.html
https://www.suse.com/security/cve/CVE-2015-0334.html
https://www.suse.com/security/cve/CVE-2015-0335.html
https://www.suse.com/security/cve/CVE-2015-0336.html
https://www.suse.com/security/cve/CVE-2015-0337.html
https://www.suse.com/security/cve/CVE-2015-0338.html
https://www.suse.com/security/cve/CVE-2015-0339.html
https://www.suse.com/security/cve/CVE-2015-0340.html
https://www.suse.com/security/cve/CVE-2015-0341.html
https://www.suse.com/security/cve/CVE-2015-0342.html
https://bugzilla.suse.com/922033
https://scc.suse.com:443/patches/