{"id":"MGASA-2015-0024","summary":"Updated flash-player-plugin packages fix security vulnerabilities","details":"Adobe Flash Player 11.2.202.429 contains fixes to critical security \nvulnerabilities found in earlier versions that could potentially allow an \nattacker to take control of the affected system.\n\nThis update resolves an improper file validation issue (CVE-2015-0301).  \n\nThis update resolves an information disclosure vulnerability that could be \nexploited to capture keystrokes on the affected system (CVE-2015-0302).  \n\nThis update resolves memory corruption vulnerabilities that could lead to \ncode execution (CVE-2015-0303, CVE-2015-0306).  \n\nThis update resolves heap-based buffer overflow vulnerabilities that could \nlead to code execution (CVE-2015-0304, CVE-2015-0309).  \n\nThis update resolves a type confusion vulnerability that could lead to code \nexecution (CVE-2015-0305). \n\nThis update resolves an out-of-bounds read vulnerability that could be \nexploited to leak memory addresses (CVE-2015-0307).  \n\nThis update resolves a use-after-free vulnerability that could lead to code \nexecution (CVE-2015-0308).\n","modified":"2026-04-16T06:26:09.927682207Z","published":"2015-01-14T21:55:48Z","upstream":["CVE-2015-0301","CVE-2015-0302","CVE-2015-0303","CVE-2015-0304","CVE-2015-0305","CVE-2015-0306","CVE-2015-0307","CVE-2015-0308","CVE-2015-0309"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2015-0024.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=15035"},{"type":"WEB","url":"http://helpx.adobe.com/security/products/flash-player/apsb15-01.html"}],"affected":[{"package":{"name":"flash-player-plugin","ecosystem":"Mageia:4","purl":"pkg:rpm/mageia/flash-player-plugin?arch=source&distro=mageia-4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"11.2.202.429-1.mga4.nonfree"}]}],"ecosystem_specific":{"section":"nonfree"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2015-0024.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}