Bugzilla – Bug 1019129
VUL-0: flash-player: 24.0.0.194 security update (APSB17-02)
Last modified: 2017-01-11 20:08:42 UTC
CVE-2017-2925, CVE-2017-2926, CVE-2017-2927, CVE-2017-2928, CVE-2017-2930, CVE-2017-2931, CVE-2017-2932, CVE-2017-2933, CVE-2017-2934, CVE-2017-2935, CVE-2017-2936, CVE-2017-2937, CVE-2017-2938 These updates resolve a security bypass vulnerability that could lead to information disclosure (CVE-2017-2938). These updates resolve use-after-free vulnerabilities that could lead to code execution (CVE-2017-2932, CVE-2017-2936, CVE-2017-2937). These updates resolve heap buffer overflow vulnerabilities that could lead to code execution (CVE-2017-2927, CVE-2017-2933, CVE-2017-2934, CVE-2017-2935). These updates resolve memory corruption vulnerabilities that could lead to code execution (CVE-2017-2925, CVE-2017-2926, CVE-2017-2928, CVE-2017-2930, CVE-2017-2931).
submitted
This is an autogenerated message for OBS integration: This bug (1019129) was mentioned in https://build.opensuse.org/request/show/449583 13.2:NonFree / flash-player
done
openSUSE-SU-2017:0107-1: An update that fixes 13 vulnerabilities is now available. Category: security (important) Bug References: 1019129 CVE References: CVE-2017-2925,CVE-2017-2926,CVE-2017-2927,CVE-2017-2928,CVE-2017-2930,CVE-2017-2931,CVE-2017-2932,CVE-2017-2933,CVE-2017-2934,CVE-2017-2935,CVE-2017-2936,CVE-2017-2937,CVE-2017-2938 Sources used: openSUSE 13.2 NonFree (src): flash-player-24.0.0.194-2.124.1
SUSE-SU-2017:0108-1: An update that fixes 13 vulnerabilities is now available. Category: security (important) Bug References: 1019129 CVE References: CVE-2017-2925,CVE-2017-2926,CVE-2017-2927,CVE-2017-2928,CVE-2017-2930,CVE-2017-2931,CVE-2017-2932,CVE-2017-2933,CVE-2017-2934,CVE-2017-2935,CVE-2017-2936,CVE-2017-2937,CVE-2017-2938 Sources used: SUSE Linux Enterprise Workstation Extension 12-SP1 (src): flash-player-24.0.0.194-155.1 SUSE Linux Enterprise Desktop 12-SP1 (src): flash-player-24.0.0.194-155.1