Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.1.10.2018.0286
Kategorie:Mageia Linux Local Security Checks
Titel:Mageia: Security Advisory (MGASA-2018-0286)
Zusammenfassung:The remote host is missing an update for the 'flash-player-plugin' package(s) announced via the MGASA-2018-0286 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'flash-player-plugin' package(s) announced via the MGASA-2018-0286 advisory.

Vulnerability Insight:
Updated flash-player-plugin packages fixes the following security issues

A remote attacker could possibly execute arbitrary code with the privileges
of the process or obtain sensitive information (CVE-2018-4945,
CVE-2018-5000, CVE-2018-5001, CVE-2018-5002).

In response to a class of recently disclosed vulnerabilities in popular
CPU hardware related to data cache timing (CVE-2017-5753, CVE-2017-5715,
CVE-2017-5754), known popularly as Spectre and Meltdown, Adobe are
disabling the 'shareable' property of the ActionScript ByteArray class
by default. For more info see the referenced adobe release notes.

Affected Software/OS:
'flash-player-plugin' package(s) on Mageia 6.

Solution:
Please install the updated package(s).

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2018-4945
BugTraq ID: 104413
http://www.securityfocus.com/bid/104413
https://security.gentoo.org/glsa/201806-02
https://helpx.adobe.com/security/products/flash-player/apsb18-19.html
RedHat Security Advisories: RHSA-2018:1827
https://access.redhat.com/errata/RHSA-2018:1827
http://www.securitytracker.com/id/1041058
Common Vulnerability Exposure (CVE) ID: CVE-2018-5000
Common Vulnerability Exposure (CVE) ID: CVE-2018-5001
Common Vulnerability Exposure (CVE) ID: CVE-2018-5002
BugTraq ID: 104412
http://www.securityfocus.com/bid/104412
CopyrightCopyright (C) 2022 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.