GLSA Advocate
Joined: 12 May 2004 Posts: 2663
|
Posted: Sat Jun 23, 2012 10:26 pm Post subject: [ GLSA 201206-21 ] Adobe Flash Player: Multiple vulnerabilit |
|
|
Gentoo Linux Security Advisory
Title: Adobe Flash Player: Multiple vulnerabilities (GLSA 201206-21)
Severity: normal
Exploitable: remote
Date: June 23, 2012
Bug(s): #414603, #420311
ID: 201206-21
Synopsis
Multiple vulnerabilities have been found in Adobe Flash Player
could result in the execution of arbitrary code or Denial of Service.
Background
The Adobe Flash Player is a renderer for the SWF file format, which is
commonly used to provide interactive websites.
Affected Packages
Package: www-plugins/adobe-flash
Vulnerable: < 11.2.202.236
Unaffected: >= 11.2.202.236
Architectures: All supported architectures
Description
Multiple vulnerabilities have been discovered in Adobe Flash Player.
Please review the CVE identifiers referenced below for details.
Impact
A remote attacker could entice a user to open a specially crafted SWF
file, possibly resulting in execution of arbitrary code with the
privileges of the process or a Denial of Service condition.
Workaround
There is no known workaround at this time.
Resolution
All Adobe Flash Player users should upgrade to the latest version: Code: | # emerge --sync
# emerge --ask --oneshot --verbose
">=www-plugins/adobe-flash-11.2.202.236"
|
References
CVE-2012-0779
CVE-2012-2034
CVE-2012-2035
CVE-2012-2036
CVE-2012-2037
CVE-2012-2038
CVE-2012-2039
CVE-2012-2040
Last edited by GLSA on Wed Nov 05, 2014 4:30 am; edited 2 times in total |
|