{
  "schema_version": "1.7.0",
  "id": "MGASA-2013-0370",
  "published": "2013-12-12T22:24:23Z",
  "modified": "2013-12-12T22:24:06Z",
  "summary": "Updated flash-player-plugin package fixes vulnerabilities",
  "details": "Adobe Flash Player 11.2.202.332 contains fixes to critical security\nvulnerabilities found in earlier versions. These vulnerabilities could cause a\ncrash and potentially allow an attacker to take control of the affected system.\n\nThis update resolves a type confusion vulnerability that could lead to code\nexecution (CVE-2013-5331).\n\nThis update resolves a memory corruption vulnerability that could lead to \ncode execution (CVE-2013-5332).\n",
  "upstream": [
    "CVE-2013-5331",
    "CVE-2013-5332"
  ],
  "references": [
    {
      "type": "ADVISORY",
      "url": "https://advisories.mageia.org/MGASA-2013-0370.html"
    },
    {
      "type": "WEB",
      "url": "http://helpx.adobe.com/security/products/flash-player/apsb13-28.html"
    },
    {
      "type": "REPORT",
      "url": "https://bugs.mageia.org/show_bug.cgi?id=11943"
    }
  ],
  "affected": [
    {
      "package": {
        "ecosystem": "Mageia:3",
        "name": "flash-player-plugin",
        "purl": "pkg:rpm/mageia/flash-player-plugin?arch=source&distro=mageia-3"
      },
      "ranges": [
        {
          "type": "ECOSYSTEM",
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "11.2.202.332-1.mga3.nonfree"
            }
          ]
        }
      ],
      "ecosystem_specific": {
        "section": "nonfree"
      }
    }
  ],
  "credits": [
    {
      "name": "Mageia",
      "type": "COORDINATOR",
      "contact": [
        "https://wiki.mageia.org/en/Packages_Security_Team"
      ]
    }
  ]
}
