GLSA Advocate
Joined: 12 May 2004 Posts: 2663
|
Posted: Mon Mar 19, 2018 3:26 am Post subject: [ GLSA 201803-08 ] Adobe Flash Player |
|
|
Gentoo Linux Security Advisory
Title: Adobe Flash Player: Multiple vulnerabilities (GLSA 201803-08)
Severity: normal
Exploitable: remote
Date: 2018-03-19
Bug(s): #646724, #650424
ID: 201803-08
Synopsis
Multiple vulnerabilities have been found in Adobe Flash Player, the
worst of which allows remote attackers to execute arbitrary code.
Background
The Adobe Flash Player is a renderer for the SWF file format, which is
commonly used to provide interactive websites.
Affected Packages
Package: www-plugins/adobe-flash
Vulnerable: < 29.0.0.113
Unaffected: >= 29.0.0.113
Architectures: All supported architectures
Description
Multiple vulnerabilities have been discovered in Adobe Flash Player.
Please review the CVE identifiers referenced below for details.
Impact
A remote attacker could possibly execute arbitrary code with the
privileges of the process or bypass security restrictions.
Workaround
There is no known workaround at this time.
Resolution
All Adobe Flash Player users should upgrade to the latest version: Code: | # emerge --sync
# emerge --ask --oneshot --verbose
">=www-plugins/adobe-flash-29.0.0.113"
|
References
CVE-2018-4871
CVE-2018-4877
CVE-2018-4878
CVE-2018-4919
CVE-2018-4920 |
|