drucken bookmarks versenden konfigurieren admin pdf Sicherheit: Mehrere Probleme in Flash Plugin for Browsers
Name: |
Mehrere Probleme in Flash Plugin for Browsers |
|
ID: |
201505-02 |
|
Distribution: |
Gentoo |
|
Plattformen: |
Keine Angabe |
|
Datum: |
So, 31. Mai 2015, 22:45 |
|
Referenzen: |
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3044
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3077
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3078
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3079
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3080
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3081
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3082
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3083
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3084
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3085
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3086
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3087
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3088
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3089
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3090
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3091
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3092
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3093 |
|
Applikationen: |
Flash Plugin for Browsers |
|
Originalnachricht |
This is an OpenPGP/MIME signed message (RFC 4880 and 3156) --CPeQumpFRGMmj4KecN5wQEqBp0gjUbjkj Content-Type: text/plain; charset=utf- Content-Transfer-Encoding: quoted-printable
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 201505-02 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - https://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Severity: Normal Title: Adobe Flash Player: Multiple vulnerabilities Date: May 31, 2015 Bugs: #549388 ID: 201505-02
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Synopsis ========
Multiple vulnerabilities have been found in Adobe Flash Player, the worst of which allows remote attackers to execute arbitrary code.
Background ==========
The Adobe Flash Player is a renderer for the SWF file format, which is commonly used to provide interactive websites.
Affected packages =================
------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 www-plugins/adobe-flash < 11.2.202.460 >= 11.2.202.460
Description ===========
Multiple vulnerabilities have been discovered in Adobe Flash Player. Please review the CVE identifiers referenced below for details.
Impact ======
A remote attacker could possibly execute arbitrary code with the privileges of the process, cause a Denial of Service condition, obtain sensitive information, or bypass security restrictions.
Workaround ==========
There is no known workaround at this time.
Resolution ==========
All Adobe Flash Player users should upgrade to the latest version:
# emerge --sync # emerge --ask --oneshot -v ">=www-plugins/adobe-flash-11.2.202.460"
References ==========
[ 1 ] CVE-2015-3044 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3044 [ 2 ] CVE-2015-3077 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3077 [ 3 ] CVE-2015-3078 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3078 [ 4 ] CVE-2015-3079 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3079 [ 5 ] CVE-2015-3080 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3080 [ 6 ] CVE-2015-3081 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3081 [ 7 ] CVE-2015-3082 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3082 [ 8 ] CVE-2015-3083 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3083 [ 9 ] CVE-2015-3084 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3084 [ 10 ] CVE-2015-3085 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3085 [ 11 ] CVE-2015-3086 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3086 [ 12 ] CVE-2015-3087 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3087 [ 13 ] CVE-2015-3088 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3088 [ 14 ] CVE-2015-3089 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3089 [ 15 ] CVE-2015-3090 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3090 [ 16 ] CVE-2015-3091 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3091 [ 17 ] CVE-2015-3092 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3092 [ 18 ] CVE-2015-3093 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-3093
Availability ============
This GLSA and any updates to it are available for viewing at the Gentoo Security Website:
https://security.gentoo.org/glsa/201505-02
Concerns? =========
Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our users' machines is of utmost importance to us. Any security concerns should be addressed to security@gentoo.org or alternatively, you may file a bug at https://bugs.gentoo.org.
License =======
Copyright 2015 Gentoo Foundation, Inc; referenced text belongs to its owner(s).
The contents of this document are licensed under the Creative Commons - Attribution / Share Alike license.
http://creativecommons.org/licenses/by-sa/2.5
--CPeQumpFRGMmj4KecN5wQEqBp0gjUbjkj Content-Type: application/pgp-signature; name="signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="signature.asc"
-----BEGIN PGP SIGNATURE-----
iQEcBAEBCgAGBQJVa1yYAAoJECULev7WN52Fxt8H/1S6ih+b4RcO19dKkdxpKe9A xU+QsIhLz8O03cDhZwSQW7b2hBHThKXpxVT9aFBrw4G9a76kXWez9ZmGuuE8/k8B +W9FY8bI7for+8ROscpp+OvWK9TLkdeFk+dHFdIfR170xmcB0P2M2VmyWPiJPerP ZzLhoFcyjJN5GuvdyPcsIQU23K0oVJ91IiSCoE0uiyXW230T6B/zXxsOlr3u5IRf O9JUSLzoREEB6dQH5aXJ6sDoffc+8KRjPd2HfSncX+YGVQNc8yRI1HS5bzYwdK+/ bVO+NbQGAppjQ3gmaJUiPX+Z5Ys8Me8iAE6X0aTRKr4mil6B9+UyyLVWA/9eW1M= =Xduq -----END PGP SIGNATURE-----
--CPeQumpFRGMmj4KecN5wQEqBp0gjUbjkj--
|
|
|
|