Red Hat Bugzilla – Bug 1181909
CVE-2015-0301 CVE-2015-0302 CVE-2015-0307 flash-plugin: Information disclosure via various methods (APSB15-01)
Last modified: 2015-11-25 05:24:07 EST
Adobe has released Flash Player 11.2.202.429 for Linux to correct the following flaws: * These updates resolve an improper file validation issue (CVE-2015-0301). * These updates resolve an information disclosure vulnerability that could be exploited to capture keystrokes on the affected system (CVE-2015-0302). * These updates resolve an out-of-bounds read vulnerability that could be exploited to leak memory addresses (CVE-2015-0307). External References: http://helpx.adobe.com/security/products/flash-player/apsb15-01.html
This issue has been addressed in the following products: Supplementary for Red Hat Enterprise Linux 5 Supplementary for Red Hat Enterprise Linux 6 Via RHSA-2015:0052 https://rhn.redhat.com/errata/RHSA-2015-0052.html