Security update for flash-player

SUSE Security Update: Security update for flash-player
Announcement ID: SUSE-SU-2015:1043-1
Rating: important
References: #934088
Affected Products:
  • SUSE Linux Enterprise Workstation Extension 12
  • SUSE Linux Enterprise Desktop 12

  • An update that fixes 11 vulnerabilities is now available.

    Description:

    The following issues are fixed by this updated:
    * CVE-2015-3096: These updates resolve a vulnerability that could be
    exploited to bypass the fix for CVE-2014-5333.
    * CVE-2015-3098, CVE-2015-3099, CVE-2015-3102:These updates resolve
    vulnerabilities that could be exploited to bypass the
    same-origin-policy and lead to information disclosure.
    * CVE-2015-3100: These updates resolve a stack overflow vulnerability
    that could lead to code execution.
    * CVE-2015-3103, CVE-2015-3106, CVE-2015-3107: These updates resolve
    use-after-free vulnerabilities that could lead to code execution.
    * CVE-2015-3104: These updates resolve an integer overflow
    vulnerability that could lead to code execution.
    * CVE-2015-3105: These updates resolve a memory corruption
    vulnerability that could lead to code execution.
    * CVE-2015-3108: These updates resolve a memory leak vulnerability
    that could be used to bypass ASLR (CVE-2015-3108). (bsc#934088)

    Patch Instructions:

    To install this SUSE Security Update use YaST online_update.
    Alternatively you can run the command listed for your product:

    • SUSE Linux Enterprise Workstation Extension 12:
      zypper in -t patch SUSE-SLE-WE-12-2015-263=1
    • SUSE Linux Enterprise Desktop 12:
      zypper in -t patch SUSE-SLE-DESKTOP-12-2015-263=1

    To bring your system up-to-date, use "zypper patch".

    Package List:

    • SUSE Linux Enterprise Workstation Extension 12 (i586 x86_64):
      • flash-player-11.2.202.466-86.1
      • flash-player-gnome-11.2.202.466-86.1
    • SUSE Linux Enterprise Desktop 12 (i586 x86_64):
      • flash-player-11.2.202.466-86.1
      • flash-player-gnome-11.2.202.466-86.1

    References: