Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.69227
Category:Red Hat Local Security Checks
Title:RedHat Security Advisory RHSA-2011:0368
Summary:NOSUMMARY
Description:Description:
The remote host is missing updates announced in
advisory RHSA-2011:0368.

The flash-plugin package contains a Mozilla Firefox compatible Adobe Flash
Player web browser plug-in.

Adobe Flash Player 9 is vulnerable to critical security flaws and should no
longer be used. A remote attacker could use these flaws to execute
arbitrary code with the privileges of the user running Flash Player 9.
(CVE-2011-0558, CVE-2011-0559, CVE-2011-0560, CVE-2011-0561, CVE-2011-0571,
CVE-2011-0572, CVE-2011-0573, CVE-2011-0574, CVE-2011-0575, CVE-2011-0577,
CVE-2011-0578, CVE-2011-0607, CVE-2011-0608)

Adobe is no longer providing security updates for Adobe Flash Player 9, and
is not providing a replacement Flash Player version compatible with Red Hat
Enterprise Linux 4.

This erratum disables Adobe Flash Player 9 to prevent it from functioning.
User wishing to continue using Flash Player 9, despite the vulnerabilities,
can add the flash-plugin package to the up2date skip list. Refer to the
following Red Hat Knowledgebase article for instructions on adding a
package to the up2date skip list:
https://access.redhat.com/kb/docs/DOC-1639

Solution:
Please note that this update is available via
Red Hat Network. To use Red Hat Network, launch the Red
Hat Update Agent with the following command: up2date

http://rhn.redhat.com/errata/RHSA-2011-0368.html
http://kb2.adobe.com/cps/406/kb406791.html

Risk factor : Critical

CVSS Score:
9.3

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2011-0558
BugTraq ID: 46194
http://www.securityfocus.com/bid/46194
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=893
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14056
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16129
http://www.redhat.com/support/errata/RHSA-2011-0206.html
http://www.redhat.com/support/errata/RHSA-2011-0259.html
http://www.redhat.com/support/errata/RHSA-2011-0368.html
http://www.securitytracker.com/id?1025055
http://secunia.com/advisories/43267
http://secunia.com/advisories/43292
http://secunia.com/advisories/43340
http://secunia.com/advisories/43351
http://secunia.com/advisories/43747
SuSE Security Announcement: SUSE-SA:2011:009 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2011-02/msg00003.html
http://www.vupen.com/english/advisories/2011/0348
http://www.vupen.com/english/advisories/2011/0383
http://www.vupen.com/english/advisories/2011/0402
http://www.vupen.com/english/advisories/2011/0646
XForce ISS Database: flashplayer-actionscript-code-exec(65230)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65230
Common Vulnerability Exposure (CVE) ID: CVE-2011-0559
BugTraq ID: 46186
http://www.securityfocus.com/bid/46186
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=894
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14009
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16231
Common Vulnerability Exposure (CVE) ID: CVE-2011-0560
BugTraq ID: 46188
http://www.securityfocus.com/bid/46188
CERT/CC vulnerability note: VU#812969
http://www.kb.cert.org/vuls/id/812969
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13429
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16174
Common Vulnerability Exposure (CVE) ID: CVE-2011-0561
BugTraq ID: 46189
http://www.securityfocus.com/bid/46189
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14169
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15930
Common Vulnerability Exposure (CVE) ID: CVE-2011-0571
BugTraq ID: 46190
http://www.securityfocus.com/bid/46190
http://osvdb.org/70915
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14115
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16028
XForce ISS Database: adobe-flash-code-execution(65234)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65234
Common Vulnerability Exposure (CVE) ID: CVE-2011-0572
BugTraq ID: 46191
http://www.securityfocus.com/bid/46191
http://osvdb.org/70916
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14021
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15931
XForce ISS Database: adobe-player-code-exec(65235)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65235
Common Vulnerability Exposure (CVE) ID: CVE-2011-0573
BugTraq ID: 46192
http://www.securityfocus.com/bid/46192
http://osvdb.org/70917
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14172
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16262
XForce ISS Database: player-unspec-code-execution(65236)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65236
Common Vulnerability Exposure (CVE) ID: CVE-2011-0574
BugTraq ID: 46193
http://www.securityfocus.com/bid/46193
http://osvdb.org/70918
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13988
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15637
XForce ISS Database: flash-player-code-exec(65237)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65237
Common Vulnerability Exposure (CVE) ID: CVE-2011-0575
BugTraq ID: 46197
http://www.securityfocus.com/bid/46197
Bugtraq: 20110211 ASPR #2011-02-11-2: Remote Binary Planting in Adobe Flash Player (Google Search)
http://www.securityfocus.com/archive/1/516398/100/0/threaded
http://osvdb.org/70919
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14095
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16127
XForce ISS Database: adobe-flash-dll-code-exec(65238)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65238
Common Vulnerability Exposure (CVE) ID: CVE-2011-0577
BugTraq ID: 46196
http://www.securityfocus.com/bid/46196
http://osvdb.org/70920
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14164
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15754
XForce ISS Database: adobe-fontprasing-code-execution(65239)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65239
Common Vulnerability Exposure (CVE) ID: CVE-2011-0578
BugTraq ID: 46195
http://www.securityfocus.com/bid/46195
http://www.zerodayinitiative.com/advisories/ZDI-11-081/
http://osvdb.org/70921
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13205
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16018
XForce ISS Database: adobe-flashplayer-unspec-ce(65240)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65240
Common Vulnerability Exposure (CVE) ID: CVE-2011-0607
BugTraq ID: 46282
http://www.securityfocus.com/bid/46282
http://osvdb.org/70922
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14137
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16194
XForce ISS Database: adobe-player-ce(65241)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65241
Common Vulnerability Exposure (CVE) ID: CVE-2011-0608
BugTraq ID: 46283
http://www.securityfocus.com/bid/46283
http://osvdb.org/70923
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14066
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16026
XForce ISS Database: adobe-code-exec(65242)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65242
CopyrightCopyright (c) 2011 E-Soft Inc. http://www.securityspace.com

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.