[Bug 1154460] [NEW] new upstream release: 25.0.1364.172

Launchpad Bug Tracker 1154460 at bugs.launchpad.net
Wed Mar 13 13:38:25 UTC 2013


*** This bug is a security vulnerability ***

You have been subscribed to a public security bug:

And again a new stable release: http://googlechromereleases.blogspot.de/2013/03/stable-channel-update_12.html
Comes with a new Flash: https://www.adobe.com/support/security/bulletins/apsb13-09.html

Here are the CVEs:

- These updates resolve an integer overflow vulnerability that could lead to code execution (CVE-2013-0646).
- These updates resolve a use-after-free vulnerability that could be exploited to execute arbitrary code (CVE-2013-0650).
- These updates resolve a memory corruption vulnerability that could lead to code execution (CVE-2013-1371).
- These updates resolve a heap buffer overflow vulnerability that could lead to code execution (CVE-2013-1375).

** Affects: flashplugin-nonfree (Ubuntu)
     Importance: Undecided
         Status: Triaged

-- 
new upstream release: 25.0.1364.172
https://bugs.launchpad.net/bugs/1154460
You received this bug notification because you are a member of Mozilla Bugs, which is subscribed to flashplugin-nonfree in Ubuntu.




More information about the Ubuntu-mozillateam-bugs mailing list