{"affected":[{"ecosystem_specific":{"binaries":[{"flash-player":"11.2.202.577-0.38.1","flash-player-gnome":"11.2.202.577-0.38.1","flash-player-kde4":"11.2.202.577-0.38.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Desktop 11 SP4","name":"flash-player","purl":"pkg:rpm/suse/flash-player&distro=SUSE%20Linux%20Enterprise%20Desktop%2011%20SP4"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"11.2.202.577-0.38.1"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"\nAdobe flash-player was updated to 11.2.202.577 to fix the following\nlist of security issues (bsc#970547):\n\nThese updates resolve integer overflow vulnerabilities that could lead\nto code execution (CVE-2016-0963, CVE-2016-0993, CVE-2016-1010).\n\nThese updates resolve use-after-free vulnerabilities that could\nlead to code execution (CVE-2016-0987, CVE-2016-0988, CVE-2016-0990,\nCVE-2016-0991, CVE-2016-0994, CVE-2016-0995, CVE-2016-0996, CVE-2016-0997,\nCVE-2016-0998, CVE-2016-0999, CVE-2016-1000).\n\nThese updates resolve a heap overflow vulnerability that could lead to\ncode execution (CVE-2016-1001).\n\nThese updates resolve memory corruption vulnerabilities that could\nlead to code execution (CVE-2016-0960, CVE-2016-0961, CVE-2016-0962,\nCVE-2016-0986, CVE-2016-0989, CVE-2016-0992, CVE-2016-1002,\nCVE-2016-1005).\n\nAdobe advisory with more information:\nhttps://helpx.adobe.com/security/products/flash-player/apsb16-08.html\n","id":"SUSE-SU-2016:0716-1","modified":"2016-03-11T09:04:23Z","published":"2016-03-11T09:04:23Z","references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2016/suse-su-20160716-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/970547"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0960"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0961"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0962"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0963"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0986"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0987"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0988"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0989"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0990"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0991"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0992"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0993"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0994"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0995"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0996"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0997"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0998"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-0999"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-1000"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-1001"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-1002"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-1005"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-1010"}],"related":["CVE-2016-0960","CVE-2016-0961","CVE-2016-0962","CVE-2016-0963","CVE-2016-0986","CVE-2016-0987","CVE-2016-0988","CVE-2016-0989","CVE-2016-0990","CVE-2016-0991","CVE-2016-0992","CVE-2016-0993","CVE-2016-0994","CVE-2016-0995","CVE-2016-0996","CVE-2016-0997","CVE-2016-0998","CVE-2016-0999","CVE-2016-1000","CVE-2016-1001","CVE-2016-1002","CVE-2016-1005","CVE-2016-1010"],"summary":"Security update for flash-player","upstream":["CVE-2016-0960","CVE-2016-0961","CVE-2016-0962","CVE-2016-0963","CVE-2016-0986","CVE-2016-0987","CVE-2016-0988","CVE-2016-0989","CVE-2016-0990","CVE-2016-0991","CVE-2016-0992","CVE-2016-0993","CVE-2016-0994","CVE-2016-0995","CVE-2016-0996","CVE-2016-0997","CVE-2016-0998","CVE-2016-0999","CVE-2016-1000","CVE-2016-1001","CVE-2016-1002","CVE-2016-1005","CVE-2016-1010"]}