RHSA-2015:1214: flash-plugin security update

SeverityCVSSPublishedAddedModified
10(AV:N/AC:L/Au:N/C:C/I:C/A:C)July 07, 2015July 08, 2015September 06, 2015

Available Exploits 

Description

The flash-plugin package contains a Mozilla Firefox compatible Adobe FlashPlayer web browser plug-in.This update fixes multiple vulnerabilities in Adobe Flash Player. Thesevulnerabilities are detailed in the Adobe Security Bulletin APSB15-16listed in the References section.Multiple flaws were found in the way flash-plugin displayed certain SWFcontent. An attacker could use these flaws to create a specially craftedSWF file that would cause flash-plugin to crash or, potentially, executearbitrary code when the victim loaded a page containing the malicious SWFcontent. (CVE-2015-3117, CVE-2015-3118, CVE-2015-3119, CVE-2015-3120,CVE-2015-3121, CVE-2015-3122, CVE-2015-3123, CVE-2015-3124, CVE-2015-3126,CVE-2015-3127, CVE-2015-3128, CVE-2015-3129, CVE-2015-3130, CVE-2015-3131,CVE-2015-3132, CVE-2015-3133, CVE-2015-3134, CVE-2015-3135, CVE-2015-3136,CVE-2015-3137, CVE-2015-4428, CVE-2015-4429, CVE-2015-4430, CVE-2015-4431,CVE-2015-4432, CVE-2015-4433, CVE-2015-5117, CVE-2015-5118, CVE-2015-5119)Multiple security bypass flaws were found in flash-plugin that could leadto the disclosure of sensitive information. (CVE-2014-0578, CVE-2015-3114,CVE-2015-3115, CVE-2015-3116, CVE-2015-3125, CVE-2015-5116)All users of Adobe Flash Player should install this updated package, whichupgrades Flash Player to version 11.2.202.481.

Free Nexpose Download

Discover, prioritize, and remediate security risks today!
 DOWNLOAD NOW

References

Solution

linuxrpm-upgrade-rhel50-ix86-flash-plugin

Related Vulnerabilities