RHSA-2015:1214: flash-plugin security update
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
10 | (AV:N/AC:L/Au:N/C:C/I:C/A:C) | July 07, 2015 | July 08, 2015 | September 06, 2015 |
Available Exploits
Description
The flash-plugin package contains a Mozilla Firefox compatible Adobe FlashPlayer web browser plug-in.This update fixes multiple vulnerabilities in Adobe Flash Player. Thesevulnerabilities are detailed in the Adobe Security Bulletin APSB15-16listed in the References section.Multiple flaws were found in the way flash-plugin displayed certain SWFcontent. An attacker could use these flaws to create a specially craftedSWF file that would cause flash-plugin to crash or, potentially, executearbitrary code when the victim loaded a page containing the malicious SWFcontent. (CVE-2015-3117, CVE-2015-3118, CVE-2015-3119, CVE-2015-3120,CVE-2015-3121, CVE-2015-3122, CVE-2015-3123, CVE-2015-3124, CVE-2015-3126,CVE-2015-3127, CVE-2015-3128, CVE-2015-3129, CVE-2015-3130, CVE-2015-3131,CVE-2015-3132, CVE-2015-3133, CVE-2015-3134, CVE-2015-3135, CVE-2015-3136,CVE-2015-3137, CVE-2015-4428, CVE-2015-4429, CVE-2015-4430, CVE-2015-4431,CVE-2015-4432, CVE-2015-4433, CVE-2015-5117, CVE-2015-5118, CVE-2015-5119)Multiple security bypass flaws were found in flash-plugin that could leadto the disclosure of sensitive information. (CVE-2014-0578, CVE-2015-3114,CVE-2015-3115, CVE-2015-3116, CVE-2015-3125, CVE-2015-5116)All users of Adobe Flash Player should install this updated package, whichupgrades Flash Player to version 11.2.202.481.
Free Nexpose Download
Discover, prioritize, and remediate security risks today!
References
- CERT-TA15-195A
- CERT-VN-561288
- CVE-2014-0578
- CVE-2015-3114
- CVE-2015-3115
- CVE-2015-3116
- CVE-2015-3117
- CVE-2015-3118
- CVE-2015-3119
- CVE-2015-3120
- CVE-2015-3121
- CVE-2015-3122
- CVE-2015-3123
- CVE-2015-3124
- CVE-2015-3125
- CVE-2015-3126
- CVE-2015-3127
- CVE-2015-3128
- CVE-2015-3129
- CVE-2015-3130
- CVE-2015-3131
- CVE-2015-3132
- CVE-2015-3133
- CVE-2015-3134
- CVE-2015-3135
- CVE-2015-3136
- CVE-2015-3137
- CVE-2015-4428
- CVE-2015-4429
- CVE-2015-4430
- CVE-2015-4431
- CVE-2015-4432
- CVE-2015-4433
- CVE-2015-5116
- CVE-2015-5117
- CVE-2015-5118
- CVE-2015-5119
- REDHAT-RHSA-2015:1214
Solution
linuxrpm-upgrade-rhel50-ix86-flash-pluginRelated Vulnerabilities
- SUSE Linux Security Vulnerability: CVE-2015-5116
- Security update for Adobe AIR (CVE-2015-3119)
- SUSE Linux Security Vulnerability: CVE-2015-4429
- Security update for Adobe AIR (CVE-2015-3116)
- Security update for Adobe AIR (CVE-2015-5116)
- SUSE Linux Security Vulnerability: CVE-2015-4428
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3124)
- Security update for Adobe AIR (CVE-2015-3118)
- SUSE Linux Security Vulnerability: CVE-2015-3124
- SUSE Linux Security Vulnerability: CVE-2015-3131
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3119)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3133)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3127)
- Security update for Adobe AIR (CVE-2015-3121)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-5119)
- SUSE Linux Security Vulnerability: CVE-2014-0578
- Security update for Adobe AIR (CVE-2015-5119)
- SUSE Linux Security Vulnerability: CVE-2015-3135
- Security update for Adobe AIR (CVE-2015-3130)
- SUSE Linux Security Vulnerability: CVE-2015-3117
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3117)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3125)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3128)
- Security update for Adobe AIR (CVE-2015-3124)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-4428)
- Security update for Adobe AIR (CVE-2015-3137)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3123)
- Security update for Adobe AIR (CVE-2015-4430)
- Security update for Adobe AIR (CVE-2015-3134)
- SUSE Linux Security Vulnerability: CVE-2015-3128
- SUSE Linux Security Vulnerability: CVE-2015-3118
- Security update for Adobe AIR (CVE-2015-4432)
- SUSE Linux Security Vulnerability: CVE-2015-3116
- Security update for Adobe AIR (CVE-2015-3115)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3137)
- SUSE Linux Security Vulnerability: CVE-2015-5118
- Security update for Adobe AIR (CVE-2015-3129)
- SUSE Linux Security Vulnerability: CVE-2015-3115
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3135)
- Security update for Adobe AIR (CVE-2015-3133)
- SUSE Linux Security Vulnerability: CVE-2015-3123
- SUSE Linux Security Vulnerability: CVE-2015-5117
- Security update for Adobe AIR (CVE-2015-3135)
- SUSE Linux Security Vulnerability: CVE-2015-3126
- Security update for Adobe AIR (CVE-2015-3123)
- SUSE Linux Security Vulnerability: CVE-2015-4430
- SUSE Linux Security Vulnerability: CVE-2015-3122
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3114)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3131)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3116)
- Security update for Adobe AIR (CVE-2015-3120)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-4429)
- SUSE Linux Security Vulnerability: CVE-2015-4433
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-5116)
- Security update for Adobe AIR (CVE-2015-3117)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-5117)
- Security update for Adobe AIR (CVE-2015-3125)
- Security update for Adobe AIR (CVE-2015-3127)
- Security update for Adobe AIR (CVE-2015-5117)
- SUSE Linux Security Vulnerability: CVE-2015-3129
- SUSE Linux Security Vulnerability: CVE-2015-3121
- SUSE Linux Security Vulnerability: CVE-2015-3136
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3122)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-5118)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-4430)
- SUSE Linux Security Vulnerability: CVE-2015-4431
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2014-0578)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3121)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3132)
- SUSE Linux Security Vulnerability: CVE-2015-5119
- Security update for Adobe AIR (CVE-2015-3132)
- Security update for Adobe AIR (CVE-2015-5118)
- Security update for Adobe AIR (CVE-2015-4431)
- Security update for Adobe AIR (CVE-2014-0578)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-4432)
- SUSE Linux Security Vulnerability: CVE-2015-3130
- SUSE Linux Security Vulnerability: CVE-2015-3119
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3136)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-4433)
- SUSE Linux Security Vulnerability: CVE-2015-3132
- Security update for Adobe AIR (CVE-2015-4433)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3118)
- SUSE Linux Security Vulnerability: CVE-2015-3125
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3115)
- Security update for Adobe AIR (CVE-2015-3128)
- Security update for Adobe AIR (CVE-2015-3126)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3129)
- SUSE Linux Security Vulnerability: CVE-2015-4432
- Security update for Adobe AIR (CVE-2015-3122)
- Security update for Adobe AIR (CVE-2015-3136)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3130)
- SUSE Linux Security Vulnerability: CVE-2015-3137
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3126)
- Security update for Adobe AIR (CVE-2015-3114)
- FreeBSD: Adobe Flash Player -- critical vulnerabilities (CVE-2015-5119)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3120)
- Security update for Adobe AIR (CVE-2015-4428)
- APSB15-16: Security updates available for Adobe Flash Player (CVE-2015-3134)
- SUSE Linux Security Vulnerability: CVE-2015-3127
- SUSE Linux Security Vulnerability: CVE-2015-3114