{"id":"MGASA-2018-0315","summary":"Updated flash-player-plugin packages fix security vulnerabilities","details":"Updated flash-player-plugin packages fix security vulnerabilities:\n* A type confusion vulnerability that could lead to arbitrary code\n  execution (CVE-2018-5007).\n* An out of bounds read that could lead to information disclosure\n  (CVE-2018-5008).\n","modified":"2026-04-16T06:25:36.058579855Z","published":"2018-07-13T19:01:19Z","upstream":["CVE-2018-5007","CVE-2018-5008"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2018-0315.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=23292"},{"type":"WEB","url":"https://helpx.adobe.com/security/products/flash-player/apsb18-24.html"}],"affected":[{"package":{"name":"flash-player-plugin","ecosystem":"Mageia:6","purl":"pkg:rpm/mageia/flash-player-plugin?arch=source&distro=mageia-6"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"30.0.0.134-1.mga6.nonfree"}]}],"ecosystem_specific":{"section":"nonfree"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2018-0315.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}