{"id":"MGASA-2019-0149","summary":"Updated flash-player-plugin packages fix security vulnerability","details":"An out-of-bounds read that leads to information disclosure. (CVE-2019-7108)\n\nA use after free that leads to arbitrary code execution. (CVE-2019-7096)\n","modified":"2026-04-16T04:41:05.137465913Z","published":"2019-04-10T22:07:23Z","upstream":["CVE-2019-7096","CVE-2019-7108"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2019-0149.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=24643"},{"type":"WEB","url":"https://helpx.adobe.com/security/products/flash-player/apsb19-19.html"}],"affected":[{"package":{"name":"flash-player-plugin","ecosystem":"Mageia:6","purl":"pkg:rpm/mageia/flash-player-plugin?arch=source&distro=mageia-6"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"32.0.0.171-1.mga6.nonfree"}]}],"ecosystem_specific":{"section":"nonfree"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2019-0149.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}