752 lines
39 KiB
JSON
752 lines
39 KiB
JSON
{
|
|
"Definition": [
|
|
{
|
|
"ID": "oval:org.altlinux.errata:def:20161496",
|
|
"Version": "oval:org.altlinux.errata:def:20161496",
|
|
"Class": "patch",
|
|
"Metadata": {
|
|
"Title": "ALT-PU-2016-1496: package `adobe-flash-player` update to version 11-alt62",
|
|
"AffectedList": [
|
|
{
|
|
"Family": "unix",
|
|
"Platforms": [
|
|
"ALT Linux branch c9f2"
|
|
],
|
|
"Products": [
|
|
"ALT SPWorkstation",
|
|
"ALT SPServer"
|
|
]
|
|
}
|
|
],
|
|
"References": [
|
|
{
|
|
"RefID": "ALT-PU-2016-1496",
|
|
"RefURL": "https://errata.altlinux.org/ALT-PU-2016-1496",
|
|
"Source": "ALTPU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01276",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01276",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01277",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01277",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01278",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01278",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01279",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01279",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01280",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01280",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01281",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01281",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01282",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01282",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01283",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01283",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01284",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01284",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01285",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01285",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01295",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01295",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01296",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01296",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01297",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01297",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01298",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01298",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01299",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01299",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01300",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01300",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01301",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01301",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01302",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01302",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01303",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01303",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01304",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01304",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01305",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01305",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01306",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01306",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01307",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01307",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01308",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01308",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "BDU:2016-01309",
|
|
"RefURL": "https://bdu.fstec.ru/vul/2016-01309",
|
|
"Source": "BDU"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-1096",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-1096",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-1097",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-1097",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-1098",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-1098",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-1099",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-1099",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-1100",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-1100",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-1101",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-1101",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-1102",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-1102",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-1103",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-1103",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-1104",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-1104",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-1105",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-1105",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-1106",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-1106",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-1107",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-1107",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-1108",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-1108",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-1109",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-1109",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-1110",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-1110",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-4108",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-4108",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-4109",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-4109",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-4110",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-4110",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-4111",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-4111",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-4112",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-4112",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-4113",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-4113",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-4114",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-4114",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-4115",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-4115",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-4116",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-4116",
|
|
"Source": "CVE"
|
|
},
|
|
{
|
|
"RefID": "CVE-2016-4117",
|
|
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2016-4117",
|
|
"Source": "CVE"
|
|
}
|
|
],
|
|
"Description": "This update upgrades adobe-flash-player to version 11-alt62. \nSecurity Fix(es):\n\n * BDU:2016-01276: Уязвимость программной платформы Flash Player, позволяющая нарушителю получить контроль над системой и вызвать аварийное завершение работы приложения\n\n * BDU:2016-01277: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01278: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01279: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01280: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01281: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01282: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01283: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01284: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01285: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01295: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01296: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01297: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01298: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01299: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01300: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01301: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01302: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01303: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01304: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01305: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01306: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01307: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01308: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * BDU:2016-01309: Уязвимость программной платформы Flash Player, позволяющая нарушителю повлиять на целостность, доступность и конфиденциальность информации\n\n * CVE-2016-1096: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-1097: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-1098: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-1099: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-1100: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-1101: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-1102: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-1103: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-1104: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-1105: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-1106: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-1107: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-1108: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-1109: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-1110: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-4108: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-4109: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-4110: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-4111: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-4112: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-4113: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-4114: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-4115: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-4116: Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.\n\n * CVE-2016-4117: Adobe Flash Player 21.0.0.226 and earlier allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in May 2016.",
|
|
"Advisory": {
|
|
"From": "errata.altlinux.org",
|
|
"Severity": "Critical",
|
|
"Rights": "Copyright 2024 BaseALT Ltd.",
|
|
"Issued": {
|
|
"Date": "2016-05-13"
|
|
},
|
|
"Updated": {
|
|
"Date": "2016-05-13"
|
|
},
|
|
"BDUs": [
|
|
{
|
|
"ID": "BDU:2016-01276",
|
|
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01276",
|
|
"Impact": "Critical",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01277",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01277",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01278",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01278",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01279",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01279",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01280",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01280",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01281",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01281",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01282",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01282",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01283",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01283",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01284",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01284",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01285",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01285",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01295",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01295",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01296",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01296",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01297",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01297",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01298",
|
|
"CVSS": "AV:N/AC:M/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01298",
|
|
"Impact": "Critical",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01299",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01299",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01300",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01300",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01301",
|
|
"CVSS": "AV:N/AC:M/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01301",
|
|
"Impact": "Critical",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01302",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01302",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01303",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01303",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01304",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01304",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01305",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01305",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01306",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01306",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01307",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01307",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01308",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01308",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "BDU:2016-01309",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CWE": "CWE-17",
|
|
"Href": "https://bdu.fstec.ru/vul/2016-01309",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
}
|
|
],
|
|
"CVEs": [
|
|
{
|
|
"ID": "CVE-2016-1096",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-1096",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-1097",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-1097",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-1098",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-1098",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-1099",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-1099",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-1100",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-1100",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-1101",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-1101",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-1102",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-1102",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-1103",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-1103",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-1104",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-1104",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-1105",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-1105",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-1106",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-1106",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-1107",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-1107",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-1108",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-1108",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-1109",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-1109",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-1110",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-1110",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-4108",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-4108",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-4109",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-4109",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-4110",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-4110",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-4111",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-4111",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-4112",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-4112",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-4113",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-4113",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-4114",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-4114",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-4115",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-4115",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-4116",
|
|
"CVSS": "AV:N/AC:H/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-4116",
|
|
"Impact": "High",
|
|
"Public": "20160511"
|
|
},
|
|
{
|
|
"ID": "CVE-2016-4117",
|
|
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
|
|
"CVSS3": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
|
|
"CWE": "NVD-CWE-noinfo",
|
|
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2016-4117",
|
|
"Impact": "Critical",
|
|
"Public": "20160511"
|
|
}
|
|
],
|
|
"AffectedCPEs": {
|
|
"CPEs": [
|
|
"cpe:/o:alt:spworkstation:8.4",
|
|
"cpe:/o:alt:spserver:8.4"
|
|
]
|
|
}
|
|
}
|
|
},
|
|
"Criteria": {
|
|
"Operator": "AND",
|
|
"Criterions": [
|
|
{
|
|
"TestRef": "oval:org.altlinux.errata:tst:4001",
|
|
"Comment": "ALT Linux must be installed"
|
|
}
|
|
],
|
|
"Criterias": [
|
|
{
|
|
"Operator": "OR",
|
|
"Criterions": [
|
|
{
|
|
"TestRef": "oval:org.altlinux.errata:tst:20161496001",
|
|
"Comment": "i586-mozilla-plugin-adobe-flash is earlier than 3:11.2.202.621-alt62"
|
|
},
|
|
{
|
|
"TestRef": "oval:org.altlinux.errata:tst:20161496002",
|
|
"Comment": "mozilla-plugin-adobe-flash is earlier than 3:11.2.202.621-alt62"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
} |