Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.131099
Category:Mageia Linux Local Security Checks
Title:Mageia Linux Local Check: mgasa-2015-0404
Summary:Mageia Linux Local Security Checks mgasa-2015-0404
Description:Summary:
Mageia Linux Local Security Checks mgasa-2015-0404

Vulnerability Insight:
Adobe Flash Player 11.2.202.540 contains fixes to critical security vulnerabilities found in earlier versions that could potentially allow an attacker to take control of the affected system. This update resolves type confusion vulnerabilities that could lead to code execution (CVE-2015-7645, CVE-2015-7647, CVE-2015-7648). An exploit for CVE-2015-7645 is being used in the wild.

Solution:
Update the affected packages to the latest available version.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2015-7645
BugTraq ID: 77081
http://www.securityfocus.com/bid/77081
https://www.exploit-db.com/exploits/38490/
https://security.gentoo.org/glsa/201511-02
http://blog.trendmicro.com/trendlabs-security-intelligence/new-adobe-flash-zero-day-used-in-pawn-storm-campaign/
http://packetstormsecurity.com/files/134009/Adobe-Flash-IExternalizable.writeExternal-Type-Confusion.html
RedHat Security Advisories: RHSA-2015:1913
http://rhn.redhat.com/errata/RHSA-2015-1913.html
RedHat Security Advisories: RHSA-2015:2024
http://rhn.redhat.com/errata/RHSA-2015-2024.html
http://www.securitytracker.com/id/1033850
SuSE Security Announcement: SUSE-SU-2015:1770 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00016.html
SuSE Security Announcement: SUSE-SU-2015:1771 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00017.html
SuSE Security Announcement: openSUSE-SU-2015:1768 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00015.html
SuSE Security Announcement: openSUSE-SU-2015:1781 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00018.html
Common Vulnerability Exposure (CVE) ID: CVE-2015-7647
BugTraq ID: 77115
http://www.securityfocus.com/bid/77115
https://www.exploit-db.com/exploits/38969/
Common Vulnerability Exposure (CVE) ID: CVE-2015-7648
BugTraq ID: 77116
http://www.securityfocus.com/bid/77116
https://www.exploit-db.com/exploits/38970/
CopyrightCopyright (C) 2015 Eero Volotinen

This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2021 E-Soft Inc. All rights reserved.