Red Hat Bugzilla – Bug 1085581
CVE-2014-0506 CVE-2014-0507 flash-plugin: two flaws leading to code execution (APSB14-09)
Last modified: 2015-11-25 05:03:32 EST
Adobe has released Flash Player 11.2.202.350 for Linux to correct the following flaws: These updates resolve a use-after-free vulnerability that could result in arbitrary code execution (CVE-2014-0506). These updates resolve a buffer overflow vulnerability that could result in arbitrary code execution (CVE-2014-0507). External References: http://helpx.adobe.com/security/products/flash-player/apsb14-09.html
This issue has been addressed in following products: Supplementary for Red Hat Enterprise Linux 5 Supplementary for Red Hat Enterprise Linux 6 Via RHSA-2014:0380 https://rhn.redhat.com/errata/RHSA-2014-0380.html