Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.1.10.2017.0314
Categoría:Mageia Linux Local Security Checks
Título:Mageia: Security Advisory (MGASA-2017-0314)
Resumen:The remote host is missing an update for the 'flash-player-plugin' package(s) announced via the MGASA-2017-0314 advisory.
Descripción:Summary:
The remote host is missing an update for the 'flash-player-plugin' package(s) announced via the MGASA-2017-0314 advisory.

Vulnerability Insight:
This update upgrades Flash Player to version 26.0.0.151.

Security Fix(es):
* This update fixes multiple vulnerabilities in Adobe Flash Player.
These vulnerabilities, detailed in the Adobe Security Bulletin listed in
the References section, could allow an attacker to create a specially
crafted SWF file that would cause flash-plugin to crash, execute
arbitrary code, or disclose sensitive information when the victim loaded
a page containing the malicious SWF content.
(CVE-2017-3085, CVE-2017-3106)

Affected Software/OS:
'flash-player-plugin' package(s) on Mageia 5, Mageia 6.

Solution:
Please install the updated package(s).

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2017-3085
BugTraq ID: 100191
http://www.securityfocus.com/bid/100191
https://security.gentoo.org/glsa/201709-16
http://www.zerodayinitiative.com/advisories/ZDI-17-634/
https://blog.bjornweb.nl/2017/08/flash-remote-sandbox-escape-windows-user-credentials-leak/
RedHat Security Advisories: RHSA-2017:2457
https://access.redhat.com/errata/RHSA-2017:2457
http://www.securitytracker.com/id/1039088
Common Vulnerability Exposure (CVE) ID: CVE-2017-3106
BugTraq ID: 100190
http://www.securityfocus.com/bid/100190
https://www.exploit-db.com/exploits/42480/
CopyrightCopyright (C) 2022 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.