critical
Security update for flash-player
SUSE-SLE-WE-12-2015-323
flash-player was updated to fix two security issues. These security issues were fixed: - CVE-2015-5123: Use-after-free vulnerability in the BitmapData class in the ActionScript 3 (AS3) implementation in Adobe Flash Player allowed remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted Flash content that overrides a valueOf function (bsc#937752). - CVE-2015-5122: Use-after-free vulnerability in the DisplayObject class in the ActionScript 3 (AS3) implementation in Adobe Flash Player allowed remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted Flash content that leverages improper handling of the opaqueBackground property (bsc#937752).
-
Release DateJul 16 2015
-
References
-
Typesecurity
-
Severitycritical
cloud_download Downloads
SUSE Linux Enterprise Workstation Extension 12 x86_64
-
Packagesflash-player
Adobe Flash Plugin and Standalone Playerflash-player-gnome11.2.202.491-96.1 lock rpm lock nosrc11.2.202.491-96.1 lock rpm lock nosrc
Adobe Flash Plugin and Standalone Player Settings11.2.202.491-96.1 lock rpm11.2.202.491-96.1 lock rpm