CVE-2006-0024 addresses several security vulnerabilities

Related Vulnerabilities: CVE-2006-0024  

Debian Bug report logs - #357038
CVE-2006-0024 addresses several security vulnerabilities

version graph

Reported by: Daniel Leidert <daniel.leidert@wgdd.de>

Date: Wed, 15 Mar 2006 13:33:01 UTC

Severity: critical

Tags: security

Found in versions flashplugin-nonfree/7.0.61-3, flashplugin-nonfree/7.0.25-5

Fixed in version flashplugin-nonfree/7.0.61-4

Done: Bart Martens <bart.martens@advalvas.be>

Bug is archived. No further changes may be made.

Toggle useless messages

View this report as an mbox folder, status mbox, maintainer mbox


Report forwarded to debian-bugs-dist@lists.debian.org, Bart Martens <bart.martens@advalvas.be>:
Bug#357038; Package flashplugin-nonfree. (full text, mbox, link).


Acknowledgement sent to Daniel Leidert <daniel.leidert.spam@gmx.net>:
New Bug report received and forwarded. Copy sent to Bart Martens <bart.martens@advalvas.be>. (full text, mbox, link).


Message #5 received at submit@bugs.debian.org (full text, mbox, reply):

From: Daniel Leidert <daniel.leidert.spam@gmx.net>
To: Debian Bug Tracking System <submit@bugs.debian.org>
Subject: CVE-2006-0024 addresses several security vulnerabilities
Date: Wed, 15 Mar 2006 14:20:23 +0100
Package: flashplugin-nonfree
Version: 7.0.61-3
Severity: critical

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hello,

Adobe announced the following security bulletin regarding Flash player:
http://www.macromedia.com/devnet/security/security_zone/apsb06-03.html

Please have a look at it. In accordance to the bulletin I set this
bug-report initially to critical.

Regards, Daniel



- -- System Information:
Debian Release: testing/unstable
  APT prefers unstable
  APT policy: (850, 'unstable'), (700, 'testing'), (550, 'stable'), (110, 'experimental')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.15.02060113
Locale: LANG=de_DE, LC_CTYPE=de_DE (charmap=ISO-8859-1)

Versions of packages flashplugin-nonfree depends on:
ii  debconf [debconf-2.0]         1.4.71     Debian configuration management sy
ii  gsfonts-x11                   0.18       Make Ghostscript fonts available t

Versions of packages flashplugin-nonfree recommends:
pn  libstdc++2.10-glibc2.2        <none>     (no description available)

- -- debconf information excluded

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2.2 (GNU/Linux)

iD8DBQFEGBSXdg0kG0+YFBERAqpEAJ9M4B8c7sV0YrKd1pnj3I4mSISRYgCdGZMX
P7IVbKHdMSJQaz7hkIVDcKw=
=gTCK
-----END PGP SIGNATURE-----



Bug marked as found in version 7.0.25-5. Request was from Sam Morris <sam@robots.org.uk> to control@bugs.debian.org. (full text, mbox, link).


Reply sent to Bart Martens <bart.martens@advalvas.be>:
You have taken responsibility. (full text, mbox, link).


Notification sent to Daniel Leidert <daniel.leidert.spam@gmx.net>:
Bug acknowledged by developer. (full text, mbox, link).


Message #12 received at 357038-close@bugs.debian.org (full text, mbox, reply):

From: Bart Martens <bart.martens@advalvas.be>
To: 357038-close@bugs.debian.org
Subject: Bug#357038: fixed in flashplugin-nonfree 7.0.61-4
Date: Wed, 15 Mar 2006 14:47:07 -0800
Source: flashplugin-nonfree
Source-Version: 7.0.61-4

We believe that the bug you reported is fixed in the latest version of
flashplugin-nonfree, which is due to be installed in the Debian FTP archive:

flashplugin-nonfree_7.0.61-4.dsc
  to pool/contrib/f/flashplugin-nonfree/flashplugin-nonfree_7.0.61-4.dsc
flashplugin-nonfree_7.0.61-4.tar.gz
  to pool/contrib/f/flashplugin-nonfree/flashplugin-nonfree_7.0.61-4.tar.gz
flashplugin-nonfree_7.0.61-4_i386.deb
  to pool/contrib/f/flashplugin-nonfree/flashplugin-nonfree_7.0.61-4_i386.deb



A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 357038@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Bart Martens <bart.martens@advalvas.be> (supplier of updated flashplugin-nonfree package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.7
Date: Wed, 15 Mar 2006 14:01:11 +0100
Source: flashplugin-nonfree
Binary: flashplugin-nonfree
Architecture: source i386
Version: 7.0.61-4
Distribution: unstable
Urgency: low
Maintainer: Bart Martens <bart.martens@advalvas.be>
Changed-By: Bart Martens <bart.martens@advalvas.be>
Description: 
 flashplugin-nonfree - Macromedia Flash Player plugin installer
Closes: 356185 356334 356349 356350 356351 356357 356360 356577 356660 356734 357038
Changes: 
 flashplugin-nonfree (7.0.61-4) unstable; urgency=low
 .
   * update-flashplugin.sh:
     - Updated MD5 checksums.  Closes: #357038.
     - Override wget options.  Closes: #356185.
     - Use short option syntax of md5sum.  Closes: #356660.
     - Uninstall before install.  Closes: #356360.
   * Updated translations.  Thanks to the translators.
     Closes: #356334, #356349, #356350, #356351, #356357, #356577, #356734.
Files: 
 6968b96fcf930f1587613ca2caf484a1 555 contrib/web optional flashplugin-nonfree_7.0.61-4.dsc
 98451a67d97df4d423d93901b6448b33 17651 contrib/web optional flashplugin-nonfree_7.0.61-4.tar.gz
 357267cbd0dfc5ae4c448741345d4b64 15422 contrib/web optional flashplugin-nonfree_7.0.61-4_i386.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (GNU/Linux)

iD8DBQFEGJWhipBneRiAKDwRAtbPAJ9p5/4WAiM+Usz6gsxEDAJVw7C86gCgubJY
yuJJ0ci6uqt/OK18o1FAXwI=
=T7+W
-----END PGP SIGNATURE-----




Tags added: security Request was from Bart Martens <bart.martens@advalvas.be> to control@bugs.debian.org. (full text, mbox, link).


Changed Bug submitter from Daniel Leidert <daniel.leidert.spam@gmx.net> to Daniel Leidert <daniel.leidert@wgdd.de>. Request was from Daniel Leidert <daniel.leidert@wgdd.de> to control@bugs.debian.org. (Sat, 24 Mar 2007 23:51:39 GMT) (full text, mbox, link).


Bug archived. Request was from Debbugs Internal Request <owner@bugs.debian.org> to internal_control@bugs.debian.org. (Mon, 25 Jun 2007 06:52:08 GMT) (full text, mbox, link).


Send a report that this bug log contains spam.


Debian bug tracking system administrator <owner@bugs.debian.org>. Last modified: Wed Jun 19 14:21:32 2019; Machine Name: beach

Debian Bug tracking system

Debbugs is free software and licensed under the terms of the GNU Public License version 2. The current version can be obtained from https://bugs.debian.org/debbugs-source/.

Copyright © 1999 Darren O. Benham, 1997,2003 nCipher Corporation Ltd, 1994-97 Ian Jackson, 2005-2017 Don Armstrong, and many other contributors.