vuln-list-alt/oval/p11/ALT-PU-2015-1438/definitions.json
2024-12-12 21:07:30 +00:00

699 lines
36 KiB
JSON

{
"Definition": [
{
"ID": "oval:org.altlinux.errata:def:20151438",
"Version": "oval:org.altlinux.errata:def:20151438",
"Class": "patch",
"Metadata": {
"Title": "ALT-PU-2015-1438: package `adobe-flash-player` update to version 11-alt44",
"AffectedList": [
{
"Family": "unix",
"Platforms": [
"ALT Linux branch p11"
],
"Products": [
"ALT Container"
]
}
],
"References": [
{
"RefID": "ALT-PU-2015-1438",
"RefURL": "https://errata.altlinux.org/ALT-PU-2015-1438",
"Source": "ALTPU"
},
{
"RefID": "BDU:2015-10039",
"RefURL": "https://bdu.fstec.ru/vul/2015-10039",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10040",
"RefURL": "https://bdu.fstec.ru/vul/2015-10040",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10041",
"RefURL": "https://bdu.fstec.ru/vul/2015-10041",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10198",
"RefURL": "https://bdu.fstec.ru/vul/2015-10198",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10199",
"RefURL": "https://bdu.fstec.ru/vul/2015-10199",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10200",
"RefURL": "https://bdu.fstec.ru/vul/2015-10200",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10201",
"RefURL": "https://bdu.fstec.ru/vul/2015-10201",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10202",
"RefURL": "https://bdu.fstec.ru/vul/2015-10202",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10203",
"RefURL": "https://bdu.fstec.ru/vul/2015-10203",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10204",
"RefURL": "https://bdu.fstec.ru/vul/2015-10204",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10205",
"RefURL": "https://bdu.fstec.ru/vul/2015-10205",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10206",
"RefURL": "https://bdu.fstec.ru/vul/2015-10206",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10207",
"RefURL": "https://bdu.fstec.ru/vul/2015-10207",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10208",
"RefURL": "https://bdu.fstec.ru/vul/2015-10208",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10209",
"RefURL": "https://bdu.fstec.ru/vul/2015-10209",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10210",
"RefURL": "https://bdu.fstec.ru/vul/2015-10210",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10211",
"RefURL": "https://bdu.fstec.ru/vul/2015-10211",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10212",
"RefURL": "https://bdu.fstec.ru/vul/2015-10212",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10213",
"RefURL": "https://bdu.fstec.ru/vul/2015-10213",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10214",
"RefURL": "https://bdu.fstec.ru/vul/2015-10214",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10215",
"RefURL": "https://bdu.fstec.ru/vul/2015-10215",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10216",
"RefURL": "https://bdu.fstec.ru/vul/2015-10216",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10217",
"RefURL": "https://bdu.fstec.ru/vul/2015-10217",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10218",
"RefURL": "https://bdu.fstec.ru/vul/2015-10218",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10219",
"RefURL": "https://bdu.fstec.ru/vul/2015-10219",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10220",
"RefURL": "https://bdu.fstec.ru/vul/2015-10220",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10221",
"RefURL": "https://bdu.fstec.ru/vul/2015-10221",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10222",
"RefURL": "https://bdu.fstec.ru/vul/2015-10222",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10223",
"RefURL": "https://bdu.fstec.ru/vul/2015-10223",
"Source": "BDU"
},
{
"RefID": "BDU:2015-10224",
"RefURL": "https://bdu.fstec.ru/vul/2015-10224",
"Source": "BDU"
},
{
"RefID": "CVE-2015-3044",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-3044",
"Source": "CVE"
},
{
"RefID": "CVE-2015-3077",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-3077",
"Source": "CVE"
},
{
"RefID": "CVE-2015-3078",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-3078",
"Source": "CVE"
},
{
"RefID": "CVE-2015-3079",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-3079",
"Source": "CVE"
},
{
"RefID": "CVE-2015-3080",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-3080",
"Source": "CVE"
},
{
"RefID": "CVE-2015-3081",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-3081",
"Source": "CVE"
},
{
"RefID": "CVE-2015-3082",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-3082",
"Source": "CVE"
},
{
"RefID": "CVE-2015-3083",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-3083",
"Source": "CVE"
},
{
"RefID": "CVE-2015-3084",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-3084",
"Source": "CVE"
},
{
"RefID": "CVE-2015-3085",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-3085",
"Source": "CVE"
},
{
"RefID": "CVE-2015-3086",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-3086",
"Source": "CVE"
},
{
"RefID": "CVE-2015-3087",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-3087",
"Source": "CVE"
},
{
"RefID": "CVE-2015-3088",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-3088",
"Source": "CVE"
},
{
"RefID": "CVE-2015-3089",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-3089",
"Source": "CVE"
},
{
"RefID": "CVE-2015-3090",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-3090",
"Source": "CVE"
},
{
"RefID": "CVE-2015-3091",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-3091",
"Source": "CVE"
},
{
"RefID": "CVE-2015-3092",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-3092",
"Source": "CVE"
},
{
"RefID": "CVE-2015-3093",
"RefURL": "https://nvd.nist.gov/vuln/detail/CVE-2015-3093",
"Source": "CVE"
}
],
"Description": "This update upgrades adobe-flash-player to version 11-alt44. \nSecurity Fix(es):\n\n * BDU:2015-10039: Уязвимость программной платформы Adobe AIR, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код\n\n * BDU:2015-10040: Уязвимость программной платформы Flash Player, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код\n\n * BDU:2015-10041: Уязвимость программной платформы Flash Player, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код\n\n * BDU:2015-10198: Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код\n\n * BDU:2015-10199: Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код\n\n * BDU:2015-10200: Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код\n\n * BDU:2015-10201: Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании\n\n * BDU:2015-10202: Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании\n\n * BDU:2015-10203: Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании\n\n * BDU:2015-10204: Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код\n\n * BDU:2015-10205: Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код\n\n * BDU:2015-10206: Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код\n\n * BDU:2015-10207: Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код\n\n * BDU:2015-10208: Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код\n\n * BDU:2015-10209: Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код\n\n * BDU:2015-10210: Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код\n\n * BDU:2015-10211: Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код\n\n * BDU:2015-10212: Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код\n\n * BDU:2015-10213: Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код\n\n * BDU:2015-10214: Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код\n\n * BDU:2015-10215: Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код\n\n * BDU:2015-10216: Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код\n\n * BDU:2015-10217: Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код\n\n * BDU:2015-10218: Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код\n\n * BDU:2015-10219: Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании\n\n * BDU:2015-10220: Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании\n\n * BDU:2015-10221: Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании\n\n * BDU:2015-10222: Уязвимость программной платформы Adobe AIR, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании\n\n * BDU:2015-10223: Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании\n\n * BDU:2015-10224: Уязвимость программной платформы Flash Player, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании\n\n * CVE-2015-3044: Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors.\n\n * CVE-2015-3077: Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK \u0026 Compiler before 17.0.0.172 allow attackers to execute arbitrary code by leveraging an unspecified \"type confusion,\" a different vulnerability than CVE-2015-3084 and CVE-2015-3086.\n\n * CVE-2015-3078: Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK \u0026 Compiler before 17.0.0.172 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3089, CVE-2015-3090, and CVE-2015-3093.\n\n * CVE-2015-3079: Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK \u0026 Compiler before 17.0.0.172 allow attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors.\n\n * CVE-2015-3080: Use-after-free vulnerability in Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK \u0026 Compiler before 17.0.0.172 allows attackers to execute arbitrary code via unspecified vectors.\n\n * CVE-2015-3081: Race condition in Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK \u0026 Compiler before 17.0.0.172 allows attackers to bypass the Internet Explorer Protected Mode protection mechanism via unspecified vectors.\n\n * CVE-2015-3082: Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK \u0026 Compiler before 17.0.0.172 allow remote attackers to bypass intended restrictions on filesystem write operations via unspecified vectors, a different vulnerability than CVE-2015-3083 and CVE-2015-3085.\n\n * CVE-2015-3083: Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK \u0026 Compiler before 17.0.0.172 allow remote attackers to bypass intended restrictions on filesystem write operations via unspecified vectors, a different vulnerability than CVE-2015-3082 and CVE-2015-3085.\n\n * CVE-2015-3084: Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK \u0026 Compiler before 17.0.0.172 allow attackers to execute arbitrary code by leveraging an unspecified \"type confusion,\" a different vulnerability than CVE-2015-3077 and CVE-2015-3086.\n\n * CVE-2015-3085: Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK \u0026 Compiler before 17.0.0.172 allow remote attackers to bypass intended restrictions on filesystem write operations via unspecified vectors, a different vulnerability than CVE-2015-3082 and CVE-2015-3083.\n\n * CVE-2015-3086: Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK \u0026 Compiler before 17.0.0.172 allow attackers to execute arbitrary code by leveraging an unspecified \"type confusion,\" a different vulnerability than CVE-2015-3077 and CVE-2015-3084.\n\n * CVE-2015-3087: Integer overflow in Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK \u0026 Compiler before 17.0.0.172 allows attackers to execute arbitrary code via unspecified vectors.\n\n * CVE-2015-3088: Heap-based buffer overflow in Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK \u0026 Compiler before 17.0.0.172 allows attackers to execute arbitrary code via unspecified vectors.\n\n * CVE-2015-3089: Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK \u0026 Compiler before 17.0.0.172 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3078, CVE-2015-3090, and CVE-2015-3093.\n\n * CVE-2015-3090: Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK \u0026 Compiler before 17.0.0.172 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3078, CVE-2015-3089, and CVE-2015-3093.\n\n * CVE-2015-3091: Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK \u0026 Compiler before 17.0.0.172 do not properly restrict discovery of memory addresses, which allows attackers to bypass the ASLR protection mechanism via unspecified vectors, a different vulnerability than CVE-2015-3092.\n\n * CVE-2015-3092: Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK \u0026 Compiler before 17.0.0.172 do not properly restrict discovery of memory addresses, which allows attackers to bypass the ASLR protection mechanism via unspecified vectors, a different vulnerability than CVE-2015-3091.\n\n * CVE-2015-3093: Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK \u0026 Compiler before 17.0.0.172 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3078, CVE-2015-3089, and CVE-2015-3090.",
"Advisory": {
"From": "errata.altlinux.org",
"Severity": "Critical",
"Rights": "Copyright 2024 BaseALT Ltd.",
"Issued": {
"Date": "2015-05-14"
},
"Updated": {
"Date": "2015-05-14"
},
"BDUs": [
{
"ID": "BDU:2015-10039",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://bdu.fstec.ru/vul/2015-10039",
"Impact": "Critical",
"Public": "20150512"
},
{
"ID": "BDU:2015-10040",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://bdu.fstec.ru/vul/2015-10040",
"Impact": "Critical",
"Public": "20150512"
},
{
"ID": "BDU:2015-10041",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://bdu.fstec.ru/vul/2015-10041",
"Impact": "Critical",
"Public": "20150512"
},
{
"ID": "BDU:2015-10198",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-843",
"Href": "https://bdu.fstec.ru/vul/2015-10198",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10199",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-843",
"Href": "https://bdu.fstec.ru/vul/2015-10199",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10200",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-843",
"Href": "https://bdu.fstec.ru/vul/2015-10200",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10201",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://bdu.fstec.ru/vul/2015-10201",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10202",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://bdu.fstec.ru/vul/2015-10202",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10203",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://bdu.fstec.ru/vul/2015-10203",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10204",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-416",
"Href": "https://bdu.fstec.ru/vul/2015-10204",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10205",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-416",
"Href": "https://bdu.fstec.ru/vul/2015-10205",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10206",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-416",
"Href": "https://bdu.fstec.ru/vul/2015-10206",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10207",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-843",
"Href": "https://bdu.fstec.ru/vul/2015-10207",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10208",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-843",
"Href": "https://bdu.fstec.ru/vul/2015-10208",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10209",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-843",
"Href": "https://bdu.fstec.ru/vul/2015-10209",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10210",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-843",
"Href": "https://bdu.fstec.ru/vul/2015-10210",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10211",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-843",
"Href": "https://bdu.fstec.ru/vul/2015-10211",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10212",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-843",
"Href": "https://bdu.fstec.ru/vul/2015-10212",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10213",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-189",
"Href": "https://bdu.fstec.ru/vul/2015-10213",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10214",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-189",
"Href": "https://bdu.fstec.ru/vul/2015-10214",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10215",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-189",
"Href": "https://bdu.fstec.ru/vul/2015-10215",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10216",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://bdu.fstec.ru/vul/2015-10216",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10217",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://bdu.fstec.ru/vul/2015-10217",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10218",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://bdu.fstec.ru/vul/2015-10218",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10219",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://bdu.fstec.ru/vul/2015-10219",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10220",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://bdu.fstec.ru/vul/2015-10220",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10221",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://bdu.fstec.ru/vul/2015-10221",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10222",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://bdu.fstec.ru/vul/2015-10222",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10223",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://bdu.fstec.ru/vul/2015-10223",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "BDU:2015-10224",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://bdu.fstec.ru/vul/2015-10224",
"Impact": "Critical",
"Public": "20150513"
}
],
"CVEs": [
{
"ID": "CVE-2015-3044",
"CVSS": "AV:N/AC:L/Au:N/C:P/I:N/A:N",
"CWE": "CWE-200",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-3044",
"Impact": "Low",
"Public": "20150414"
},
{
"ID": "CVE-2015-3077",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "NVD-CWE-Other",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-3077",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "CVE-2015-3078",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-3078",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "CVE-2015-3079",
"CVSS": "AV:N/AC:L/Au:N/C:P/I:N/A:N",
"CWE": "CWE-264",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-3079",
"Impact": "Low",
"Public": "20150513"
},
{
"ID": "CVE-2015-3080",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "NVD-CWE-Other",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-3080",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "CVE-2015-3081",
"CVSS": "AV:N/AC:M/Au:N/C:N/I:P/A:N",
"CWE": "CWE-362",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-3081",
"Impact": "Low",
"Public": "20150513"
},
{
"ID": "CVE-2015-3082",
"CVSS": "AV:N/AC:L/Au:N/C:N/I:P/A:P",
"CWE": "CWE-264",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-3082",
"Impact": "Low",
"Public": "20150513"
},
{
"ID": "CVE-2015-3083",
"CVSS": "AV:N/AC:L/Au:N/C:N/I:P/A:P",
"CWE": "CWE-264",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-3083",
"Impact": "Low",
"Public": "20150513"
},
{
"ID": "CVE-2015-3084",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "NVD-CWE-Other",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-3084",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "CVE-2015-3085",
"CVSS": "AV:N/AC:L/Au:N/C:N/I:P/A:P",
"CWE": "CWE-264",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-3085",
"Impact": "Low",
"Public": "20150513"
},
{
"ID": "CVE-2015-3086",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "NVD-CWE-Other",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-3086",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "CVE-2015-3087",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-189",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-3087",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "CVE-2015-3088",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-3088",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "CVE-2015-3089",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-3089",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "CVE-2015-3090",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-3090",
"Impact": "Critical",
"Public": "20150513"
},
{
"ID": "CVE-2015-3091",
"CVSS": "AV:N/AC:L/Au:N/C:P/I:N/A:N",
"CWE": "CWE-200",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-3091",
"Impact": "Low",
"Public": "20150513"
},
{
"ID": "CVE-2015-3092",
"CVSS": "AV:N/AC:L/Au:N/C:P/I:N/A:N",
"CWE": "CWE-200",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-3092",
"Impact": "Low",
"Public": "20150513"
},
{
"ID": "CVE-2015-3093",
"CVSS": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"CWE": "CWE-119",
"Href": "https://nvd.nist.gov/vuln/detail/CVE-2015-3093",
"Impact": "Critical",
"Public": "20150513"
}
],
"AffectedCPEs": {
"CPEs": [
"cpe:/o:alt:container:11"
]
}
}
},
"Criteria": {
"Operator": "AND",
"Criterions": [
{
"TestRef": "oval:org.altlinux.errata:tst:3001",
"Comment": "ALT Linux must be installed"
}
],
"Criterias": [
{
"Operator": "OR",
"Criterions": [
{
"TestRef": "oval:org.altlinux.errata:tst:20151438001",
"Comment": "i586-mozilla-plugin-adobe-flash is earlier than 3:11.2.202.460-alt44"
},
{
"TestRef": "oval:org.altlinux.errata:tst:20151438002",
"Comment": "mozilla-plugin-adobe-flash is earlier than 3:11.2.202.460-alt44"
}
]
}
]
}
}
]
}