Mageia alert MGASA-2017-0339 (flash-player-plugin)
| From: | Mageia Updates <buildsystem-daemon@mageia.org> | |
| To: | updates-announce@ml.mageia.org | |
| Subject: | [updates-announce] MGASA-2017-0339: Updated flash-player-plugin packages fix security vulnerability | |
| Date: | Thu, 14 Sep 2017 20:22:18 +0200 | |
| Message-ID: | <20170914182218.C89B29F873@duvel.mageia.org> |
MGASA-2017-0339 - Updated flash-player-plugin packages fix security vulnerability Publication date: 14 Sep 2017 URL: http://advisories.mageia.org/MGASA-2017-0339.html Type: security Affected Mageia releases: 5, 6 CVE: CVE-2017-11281, CVE-2017-11282 Description: Adobe Flash Player 27.0.0.130 contains fixes to critical security vulnerabilities found in earlier versions that could potentially allow an attacker to take control of the affected system. This update addresses two memory corruption vulnerabilities that could lead to code execution (CVE-2017-11281, CVE-2017-11282). References: - https://bugs.mageia.org/show_bug.cgi?id=21703 - https://helpx.adobe.com/security/products/flash-player/ap... - http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-11281 - http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-11282 SRPMS: - 5/nonfree/flash-player-plugin-27.0.0.130-1.mga5.nonfree - 6/nonfree/flash-player-plugin-27.0.0.130-1.mga6.nonfree
