Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 656230

Summary: <www-plugins/adobe-flash-29.0.0.171: Type confusion vulnerability
Product: Gentoo Security Reporter: GLSAMaker/CVETool Bot <glsamaker>
Component: VulnerabilitiesAssignee: Gentoo Security <security>
Status: RESOLVED FIXED    
Severity: normal CC: desktop-misc, jer
Priority: Normal    
Version: unspecified   
Hardware: All   
OS: Linux   
Whiteboard: B2 [glsa+ cve]
Package list:
Runtime testing required: ---

Description GLSAMaker/CVETool Bot gentoo-dev 2018-05-21 12:36:54 UTC
CVE-2018-4944 (https://nvd.nist.gov/vuln/detail/CVE-2018-4944):
  Adobe Flash Player versions 29.0.0.140 and earlier have an exploitable type
  confusion vulnerability. Successful exploitation could lead to arbitrary
  code execution in the context of the current user.


@Maintainers fixed versions are available upstream. Please call for stabilization when ready.
Comment 1 GLSAMaker/CVETool Bot gentoo-dev 2018-06-13 20:55:09 UTC
This issue was resolved and addressed in
 GLSA 201806-02 at https://security.gentoo.org/glsa/201806-02
by GLSA coordinator Aaron Bauman (b-man).