Red Hat Bugzilla – Bug 1162912
CVE-2014-8437 flash-plugin: information disclosure leading to session token leak (APSB14-24)
Last modified: 2015-11-25 05:19:03 EST
Adobe has released Flash Player 11.2.202.418 for Linux to correct the following flaw: * These updates resolve an information disclosure vulnerability that could be exploited to disclose session tokens (CVE-2014-8437). External References: http://helpx.adobe.com/security/products/flash-player/apsb14-24.html
This issue has been addressed in the following products: Supplementary for Red Hat Enterprise Linux 5 Supplementary for Red Hat Enterprise Linux 6 Via RHSA-2014:1852 https://rhn.redhat.com/errata/RHSA-2014-1852.html