vuln-list-alt/oval/p11/ALT-PU-2014-1567/definitions.json
2024-12-12 21:07:30 +00:00

114 lines
4.3 KiB
JSON

{
"Definition": [
{
"ID": "oval:org.altlinux.errata:def:20141567",
"Version": "oval:org.altlinux.errata:def:20141567",
"Class": "patch",
"Metadata": {
"Title": "ALT-PU-2014-1567: package `adobe-flash-player` update to version 11-alt29",
"AffectedList": [
{
"Family": "unix",
"Platforms": [
"ALT Linux branch p11"
],
"Products": [
"ALT Container"
]
}
],
"References": [
{
"RefID": "ALT-PU-2014-1567",
"RefURL": "https://errata.altlinux.org/ALT-PU-2014-1567",
"Source": "ALTPU"
},
{
"RefID": "BDU:2015-00203",
"RefURL": "https://bdu.fstec.ru/vul/2015-00203",
"Source": "BDU"
},
{
"RefID": "BDU:2015-00263",
"RefURL": "https://bdu.fstec.ru/vul/2015-00263",
"Source": "BDU"
},
{
"RefID": "CVE-2014-0515",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2014-0515",
"Source": "CVE"
}
],
"Description": "This update upgrades adobe-flash-player to version 11-alt29. \nSecurity Fix(es):\n\n * BDU:2015-00203: Уязвимость программного обеспечения Adobe Pepper Flash для Google Chrome, позволяющая удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации\n\n * BDU:2015-00263: Уязвимость программного обеспечения Flash Player, позволяющая удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации\n\n * CVE-2014-0515: Buffer overflow in Adobe Flash Player before 11.7.700.279 and 11.8.x through 13.0.x before 13.0.0.206 on Windows and OS X, and before 11.2.202.356 on Linux, allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in April 2014.",
"Advisory": {
"From": "errata.altlinux.org",
"Severity": "Critical",
"Rights": "Copyright 2024 BaseALT Ltd.",
"Issued": {
"Date": "2014-04-29"
},
"Updated": {
"Date": "2014-04-29"
},
"BDUs": [
{
"ID": "BDU:2015-00203",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://bdu.fstec.ru/vul/2015-00203",
"Impact": "Critical",
"Public": "20140428"
},
{
"ID": "BDU:2015-00263",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://bdu.fstec.ru/vul/2015-00263",
"Impact": "Critical",
"Public": "20140428"
}
],
"CVEs": [
{
"ID": "CVE-2014-0515",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2014-0515",
"Impact": "Critical",
"Public": "20140429"
}
],
"AffectedCPEs": {
"CPEs": [
"cpe:/o:alt:container:11"
]
}
}
},
"Criteria": {
"Operator": "AND",
"Criterions": [
{
"TestRef": "oval:org.altlinux.errata:tst:3001",
"Comment": "ALT Linux must be installed"
}
],
"Criterias": [
{
"Operator": "OR",
"Criterions": [
{
"TestRef": "oval:org.altlinux.errata:tst:20141567001",
"Comment": "i586-mozilla-plugin-adobe-flash is earlier than 3:11.2.202.356-alt29"
},
{
"TestRef": "oval:org.altlinux.errata:tst:20141567002",
"Comment": "mozilla-plugin-adobe-flash is earlier than 3:11.2.202.356-alt29"
}
]
}
]
}
}
]
}