{"cves":[{"id":"CVE-2014-3209","published":"2014-11-15T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe ldns-keygen tool in ldns 1.6.x uses the current umask to set the\nprivileges of the private key, which might allow local users to obtain the\nprivate key by reading the file.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"ldns-keygen is in the ldnsutils package in universe"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-3491-1","https://www.cve.org/CVERecord?id=CVE-2014-3209"],"bugs":["https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=746758","https://www.nlnetlabs.nl/bugs-script/show_bug.cgi?id=573"],"patches":{"ldns":["upstream: https://git.nlnetlabs.nl/ldns/commit/?h=develop&id=169f38c1e25750f935838b670871056428977e6b"]},"tags":{"ldns":["universe-binary"]},"packages":[{"name":"ldns","source":"https://ubuntu.com/security/cve?package=ldns","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ldns","debian":"https://tracker.debian.org/pkg/ldns","statuses":[{"release_codename":"artful","status":"not-affected","description":"1.7.0-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"quantal","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"saucy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"1.6.17-1ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.6.17-4","component":null,"pocket":"security"},{"release_codename":"utopic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"vivid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"1.6.17-8","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"1.7.0-1ubuntu1","component":null,"pocket":"security"}]}],"notices_ids":["USN-3491-1"],"notices":[{"id":"USN-3491-1","title":"ldns vulnerabilities","summary":"Several security issues were fixed in ldns.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2017-11-22T18:15:23.083062","description":"Leon Weber discovered that the ldns-keygen tool incorrectly set permissions\non private keys. A local attacker could possibly use this issue to obtain\ngenerated private keys. This issue only applied to Ubuntu 14.04 LTS.\n(CVE-2014-3209)\n\nStephan Zeisberg discovered that ldns incorrectly handled memory when\nprocessing data. A remote attacker could use this issue to cause ldns to\ncrash, resulting in a denial of service, or possibly execute arbitrary\ncode. (CVE-2017-1000231, CVE-2017-1000232)\n","is_hidden":false,"release_packages":{"artful":[{"name":"ldns","version":"1.7.0-1ubuntu1.17.10.1","description":"ldns library for DNS programming","is_source":true},{"name":"libldns2","version":"1.7.0-1ubuntu1.17.10.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ldns","version_link":"https://launchpad.net/ubuntu/+source/ldns/1.7.0-1ubuntu1.17.10.1"}],"trusty":[{"name":"ldns","version":"1.6.17-1ubuntu0.1","description":"ldns library for DNS programming","is_source":true},{"name":"ldnsutils","version":"1.6.17-1ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ldns","version_link":"https://launchpad.net/ubuntu/+source/ldns/1.6.17-1ubuntu0.1","pocket":"security"},{"name":"libldns-dev","version":"1.6.17-1ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ldns","version_link":"https://launchpad.net/ubuntu/+source/ldns/1.6.17-1ubuntu0.1","pocket":"security"},{"name":"libldns1","version":"1.6.17-1ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ldns","version_link":"https://launchpad.net/ubuntu/+source/ldns/1.6.17-1ubuntu0.1","pocket":"security"},{"name":"python-ldns","version":"1.6.17-1ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ldns","version_link":"https://launchpad.net/ubuntu/+source/ldns/1.6.17-1ubuntu0.1","pocket":"security"}],"xenial":[{"name":"ldns","version":"1.6.17-8ubuntu0.1","description":"ldns library for DNS programming","is_source":true},{"name":"ldnsutils","version":"1.6.17-8ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ldns","version_link":"https://launchpad.net/ubuntu/+source/ldns/1.6.17-8ubuntu0.1","pocket":"security"},{"name":"libldns-dev","version":"1.6.17-8ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ldns","version_link":"https://launchpad.net/ubuntu/+source/ldns/1.6.17-8ubuntu0.1","pocket":"security"},{"name":"libldns1","version":"1.6.17-8ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ldns","version_link":"https://launchpad.net/ubuntu/+source/ldns/1.6.17-8ubuntu0.1","pocket":"security"},{"name":"python-ldns","version":"1.6.17-8ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ldns","version_link":"https://launchpad.net/ubuntu/+source/ldns/1.6.17-8ubuntu0.1","pocket":"security"}],"zesty":[{"name":"ldns","version":"1.7.0-1ubuntu1.17.04.1","description":"ldns library for DNS programming","is_source":true},{"name":"libldns2","version":"1.7.0-1ubuntu1.17.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ldns","version_link":"https://launchpad.net/ubuntu/+source/ldns/1.7.0-1ubuntu1.17.04.1"}]},"type":"USN","cves_ids":["CVE-2014-3209","CVE-2017-1000231","CVE-2017-1000232"]}]},{"id":"CVE-2014-3158","published":"2014-11-15T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nInteger overflow in the getword function in options.c in pppd in Paul's PPP\nPackage (ppp) before 2.4.7 allows attackers to \"access privileged options\"\nvia a long word in an options file, which triggers a heap-based buffer\noverflow that \"[corrupts] security-relevant variables.\"","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://marc.info/?l=linux-ppp&m=140764978420764","http://lists.fedoraproject.org/pipermail/package-announce/2014-August/136932.html","https://ubuntu.com/security/notices/USN-2429-1","https://www.cve.org/CVERecord?id=CVE-2014-3158"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=762789","https://bugzilla.redhat.com/show_bug.cgi?id=1128748"],"patches":{"ppp":["upstream: https://github.com/paulusmack/ppp/commit/7658e8257183f062dc01f87969c140707c7e52cb"]},"tags":{},"packages":[{"name":"ppp","source":"https://ubuntu.com/security/cve?package=ppp","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ppp","debian":"https://tracker.debian.org/pkg/ppp","statuses":[{"release_codename":"lucid","status":"released","description":"2.4.5~git20081126t100229-0ubuntu3.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"2.4.5-5ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"2.4.5-5.1ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.4.6-3","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"2.4.5-5.1ubuntu3.1","component":null,"pocket":"security"}]}],"notices_ids":["USN-2429-1"],"notices":[{"id":"USN-2429-1","title":"ppp vulnerability","summary":"ppp could be made to crash or run programs as an administrator if it opened\na specially crafted file.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2014-12-01T15:29:24.199435","description":"It was discovered that ppp incorrectly handled certain options files. A\nlocal attacker could possibly use this issue to escalate privileges.\n","is_hidden":false,"release_packages":{"lucid":[{"name":"ppp","version":"2.4.5~git20081126t100229-0ubuntu3.1","description":"Point-to-Point Protocol (PPP)","is_source":true},{"name":"ppp","version":"2.4.5~git20081126t100229-0ubuntu3.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ppp","version_link":"https://launchpad.net/ubuntu/+source/ppp/2.4.5~git20081126t100229-0ubuntu3.1"}],"precise":[{"name":"ppp","version":"2.4.5-5ubuntu1.1","description":"Point-to-Point Protocol (PPP)","is_source":true},{"name":"ppp","version":"2.4.5-5ubuntu1.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ppp","version_link":"https://launchpad.net/ubuntu/+source/ppp/2.4.5-5ubuntu1.1"}],"trusty":[{"name":"ppp","version":"2.4.5-5.1ubuntu2.1","description":"Point-to-Point Protocol (PPP)","is_source":true},{"name":"ppp","version":"2.4.5-5.1ubuntu2.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ppp","version_link":"https://launchpad.net/ubuntu/+source/ppp/2.4.5-5.1ubuntu2.1","pocket":"security"},{"name":"ppp-dev","version":"2.4.5-5.1ubuntu2.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ppp","version_link":"https://launchpad.net/ubuntu/+source/ppp/2.4.5-5.1ubuntu2.1","pocket":"security"},{"name":"ppp-udeb","version":"2.4.5-5.1ubuntu2.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ppp","version_link":"https://launchpad.net/ubuntu/+source/ppp/2.4.5-5.1ubuntu2.1","pocket":"security"}],"utopic":[{"name":"ppp","version":"2.4.5-5.1ubuntu3.1","description":"Point-to-Point Protocol (PPP)","is_source":true},{"name":"ppp","version":"2.4.5-5.1ubuntu3.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ppp","version_link":"https://launchpad.net/ubuntu/+source/ppp/2.4.5-5.1ubuntu3.1"}]},"type":"USN","cves_ids":["CVE-2014-3158"]}]},{"id":"CVE-2014-8567","published":"2014-11-14T15:59:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe mod_auth_mellon module before 0.8.1 allows remote attackers to cause a\ndenial of service (Apache HTTP server crash) via a crafted logout request\nthat triggers a read of uninitialized data.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://postlister.uninett.no/sympa/arc/modmellon/2014-11/msg00000.html","https://www.cve.org/CVERecord?id=CVE-2014-8567"],"bugs":[""],"patches":{"libapache2-mod-auth-mellon":["upstream: https://github.com/UNINETT/mod_auth_mellon/releases/tag/v0.8.1"]},"tags":{},"packages":[{"name":"libapache2-mod-auth-mellon","source":"https://ubuntu.com/security/cve?package=libapache2-mod-auth-mellon","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libapache2-mod-auth-mellon","debian":"https://tracker.debian.org/pkg/libapache2-mod-auth-mellon","statuses":[{"release_codename":"artful","status":"not-affected","description":"0.9.1-1","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"0.9.1-1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"0.9.1-1","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"0.9.1-1","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"0.9.0","component":null,"pocket":"security"},{"release_codename":"utopic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"wily","status":"not-affected","description":"0.9.1-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"0.9.1-1","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"0.9.1-1","component":null,"pocket":"security"},{"release_codename":"zesty","status":"not-affected","description":"0.9.1-1","component":null,"pocket":"security"},{"release_codename":"vivid","status":"not-affected","description":"0.9.1-1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2014-8090","published":"2014-11-14T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe REXML parser in Ruby 1.9.x before 1.9.3 patchlevel 551, 2.0.x before\n2.0.0 patchlevel 598, and 2.1.x before 2.1.5 allows remote attackers to\ncause a denial of service (CPU and memory consumption) a crafted XML\ndocument containing an empty string in an entity that is used in a large\nnumber of nested entity references, aka an XML Entity Expansion (XEE)\nattack. NOTE: this vulnerability exists because of an incomplete fix for\nCVE-2013-1821 and CVE-2014-8080.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.ruby-lang.org/en/news/2014/11/13/rexml-dos-cve-2014-8090/","https://ubuntu.com/security/notices/USN-2412-1","https://www.cve.org/CVERecord?id=CVE-2014-8090"],"bugs":[""],"patches":{"ruby1.8":[],"ruby1.9.1":["upstream: http://svn.ruby-lang.org/cgi-bin/viewvc.cgi?view=revision&revision=48406"],"ruby2.1":["upstream: http://svn.ruby-lang.org/cgi-bin/viewvc.cgi?view=revision&revision=48402","upstream: http://svn.ruby-lang.org/cgi-bin/viewvc.cgi?view=revision&revision=48404"],"ruby2.0":["upstream: http://svn.ruby-lang.org/cgi-bin/viewvc.cgi?view=revision&revision=48403"]},"tags":{},"packages":[{"name":"ruby1.8","source":"https://ubuntu.com/security/cve?package=ruby1.8","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ruby1.8","debian":"https://tracker.debian.org/pkg/ruby1.8","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"1.8.7.352-2ubuntu1.6","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"utopic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"vivid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"ruby1.9.1","source":"https://ubuntu.com/security/cve?package=ruby1.9.1","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ruby1.9.1","debian":"https://tracker.debian.org/pkg/ruby1.9.1","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"1.9.3.0-1ubuntu2.10","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"1.9.3.484-2ubuntu1.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"utopic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"vivid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"ruby2.0","source":"https://ubuntu.com/security/cve?package=ruby2.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ruby2.0","debian":"https://tracker.debian.org/pkg/ruby2.0","statuses":[{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"2.0.0.484-1ubuntu2.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"2.0.0.484+really457-3ubuntu1.2","component":null,"pocket":"security"},{"release_codename":"vivid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"ruby2.1","source":"https://ubuntu.com/security/cve?package=ruby2.1","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ruby2.1","debian":"https://tracker.debian.org/pkg/ruby2.1","statuses":[{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"2.1.2-2ubuntu1.2","component":null,"pocket":"security"},{"release_codename":"vivid","status":"released","description":"2.1.2-2ubuntu3","component":null,"pocket":"security"},{"release_codename":"wily","status":"released","description":"2.1.2-2ubuntu3","component":null,"pocket":"security"}]}],"notices_ids":["USN-2412-1"],"notices":[{"id":"USN-2412-1","title":"Ruby vulnerability","summary":"Ruby could be made to consume resources.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2014-11-20T16:26:25.882893","description":"Tomas Hoger discovered that Ruby incorrectly handled XML entity expansion.\nAn attacker could use this flaw to cause Ruby to consume large amounts of\nresources, resulting in a denial of service.\n","is_hidden":false,"release_packages":{"precise":[{"name":"ruby1.8","version":"1.8.7.352-2ubuntu1.6","description":"Object-oriented scripting language","is_source":true},{"name":"ruby1.9.1","version":"1.9.3.0-1ubuntu2.10","description":"Object-oriented scripting language","is_source":true},{"name":"libruby1.8","version":"1.8.7.352-2ubuntu1.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby1.8","version_link":"https://launchpad.net/ubuntu/+source/ruby1.8/1.8.7.352-2ubuntu1.6"},{"name":"libruby1.9.1","version":"1.9.3.0-1ubuntu2.10","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1","version_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1/1.9.3.0-1ubuntu2.10"},{"name":"ruby1.8","version":"1.8.7.352-2ubuntu1.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby1.8","version_link":"https://launchpad.net/ubuntu/+source/ruby1.8/1.8.7.352-2ubuntu1.6"},{"name":"ruby1.9.1","version":"1.9.3.0-1ubuntu2.10","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1","version_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1/1.9.3.0-1ubuntu2.10"}],"trusty":[{"name":"ruby1.9.1","version":"1.9.3.484-2ubuntu1.2","description":"Object-oriented scripting language","is_source":true},{"name":"ruby2.0","version":"2.0.0.484-1ubuntu2.2","description":"Object-oriented scripting language","is_source":true},{"name":"libruby1.9.1","version":"1.9.3.484-2ubuntu1.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1","version_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1/1.9.3.484-2ubuntu1.2","pocket":"security"},{"name":"libruby2.0","version":"2.0.0.484-1ubuntu2.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby2.0","version_link":"https://launchpad.net/ubuntu/+source/ruby2.0/2.0.0.484-1ubuntu2.2","pocket":"security"},{"name":"libtcltk-ruby1.9.1","version":"1.9.3.484-2ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1","version_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1/1.9.3.484-2ubuntu1.2","pocket":"security"},{"name":"ri1.9.1","version":"1.9.3.484-2ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1","version_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1/1.9.3.484-2ubuntu1.2","pocket":"security"},{"name":"ruby1.9.1","version":"1.9.3.484-2ubuntu1.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1","version_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1/1.9.3.484-2ubuntu1.2","pocket":"security"},{"name":"ruby1.9.1-dev","version":"1.9.3.484-2ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1","version_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1/1.9.3.484-2ubuntu1.2","pocket":"security"},{"name":"ruby1.9.1-examples","version":"1.9.3.484-2ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1","version_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1/1.9.3.484-2ubuntu1.2","pocket":"security"},{"name":"ruby1.9.1-full","version":"1.9.3.484-2ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1","version_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1/1.9.3.484-2ubuntu1.2","pocket":"security"},{"name":"ruby1.9.3","version":"1.9.3.484-2ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1","version_link":"https://launchpad.net/ubuntu/+source/ruby1.9.1/1.9.3.484-2ubuntu1.2","pocket":"security"},{"name":"ruby2.0","version":"2.0.0.484-1ubuntu2.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby2.0","version_link":"https://launchpad.net/ubuntu/+source/ruby2.0/2.0.0.484-1ubuntu2.2","pocket":"security"},{"name":"ruby2.0-dev","version":"2.0.0.484-1ubuntu2.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ruby2.0","version_link":"https://launchpad.net/ubuntu/+source/ruby2.0/2.0.0.484-1ubuntu2.2","pocket":"security"},{"name":"ruby2.0-doc","version":"2.0.0.484-1ubuntu2.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ruby2.0","version_link":"https://launchpad.net/ubuntu/+source/ruby2.0/2.0.0.484-1ubuntu2.2","pocket":"security"},{"name":"ruby2.0-tcltk","version":"2.0.0.484-1ubuntu2.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ruby2.0","version_link":"https://launchpad.net/ubuntu/+source/ruby2.0/2.0.0.484-1ubuntu2.2","pocket":"security"}],"utopic":[{"name":"ruby2.0","version":"2.0.0.484+really457-3ubuntu1.2","description":"Object-oriented scripting language","is_source":true},{"name":"ruby2.1","version":"2.1.2-2ubuntu1.2","description":"Object-oriented scripting language","is_source":true},{"name":"libruby2.0","version":"2.0.0.484+really457-3ubuntu1.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby2.0","version_link":"https://launchpad.net/ubuntu/+source/ruby2.0/2.0.0.484+really457-3ubuntu1.2"},{"name":"libruby2.1","version":"2.1.2-2ubuntu1.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby2.1","version_link":"https://launchpad.net/ubuntu/+source/ruby2.1/2.1.2-2ubuntu1.2"},{"name":"ruby2.0","version":"2.0.0.484+really457-3ubuntu1.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby2.0","version_link":"https://launchpad.net/ubuntu/+source/ruby2.0/2.0.0.484+really457-3ubuntu1.2"},{"name":"ruby2.1","version":"2.1.2-2ubuntu1.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby2.1","version_link":"https://launchpad.net/ubuntu/+source/ruby2.1/2.1.2-2ubuntu1.2"}]},"type":"USN","cves_ids":["CVE-2014-8090"]}]},{"id":"CVE-2014-7840","published":"2014-11-14T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe host_from_stream_offset function in arch_init.c in QEMU, when loading\nRAM during migration, allows remote attackers to execute arbitrary code via\na crafted (1) offset or (2) length value in savevm data.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://thread.gmane.org/gmane.comp.emulators.qemu/306117","https://ubuntu.com/security/notices/USN-2439-1","https://www.cve.org/CVERecord?id=CVE-2014-7840"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=769451"],"patches":{"qemu-kvm":[],"qemu":["upstream: http://git.qemu.org/?p=qemu.git;a=commit;h=0be839a2701369f669532ea5884c15bead1c6e08"]},"tags":{},"packages":[{"name":"qemu","source":"https://ubuntu.com/security/cve?package=qemu","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=qemu","debian":"https://tracker.debian.org/pkg/qemu","statuses":[{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"2.0.0+dfsg-2ubuntu1.9","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"2.1+dfsg-4ubuntu6.3","component":null,"pocket":"security"}]},{"name":"qemu-kvm","source":"https://ubuntu.com/security/cve?package=qemu-kvm","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=qemu-kvm","debian":"https://tracker.debian.org/pkg/qemu-kvm","statuses":[{"release_codename":"lucid","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"1.0+noroms-0ubuntu14.21","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"utopic","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-2439-1"],"notices":[{"id":"USN-2439-1","title":"QEMU vulnerabilities","summary":"Several security issues were fixed in QEMU.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n","references":[],"published":"2014-12-11T19:10:58.669891","description":"Michael S. Tsirkin discovered that QEMU incorrectly handled certain\nparameters during ram load while performing a migration. An attacker able\nto manipulate savevm data could use this issue to possibly execute\narbitrary code on the host. This issue only affected Ubuntu 12.04 LTS,\nUbuntu 14.04 LTS, and Ubuntu 14.10. (CVE-2014-7840)\n\nPaolo Bonzini discovered that QEMU incorrectly handled memory in the Cirrus\nVGA device. A malicious guest could possibly use this issue to write into\nmemory of the host, leading to privilege escalation. (CVE-2014-8106)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"qemu-kvm","version":"0.12.3+noroms-0ubuntu9.26","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu-kvm","version":"0.12.3+noroms-0ubuntu9.26","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu-kvm","version_link":"https://launchpad.net/ubuntu/+source/qemu-kvm/0.12.3+noroms-0ubuntu9.26"}],"precise":[{"name":"qemu-kvm","version":"1.0+noroms-0ubuntu14.21","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu-kvm","version":"1.0+noroms-0ubuntu14.21","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu-kvm","version_link":"https://launchpad.net/ubuntu/+source/qemu-kvm/1.0+noroms-0ubuntu14.21"}],"trusty":[{"name":"qemu","version":"2.0.0+dfsg-2ubuntu1.9","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu","version":"2.0.0+dfsg-2ubuntu1.9","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.9","pocket":"security"},{"name":"qemu-common","version":"2.0.0+dfsg-2ubuntu1.9","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.9","pocket":"security"},{"name":"qemu-guest-agent","version":"2.0.0+dfsg-2ubuntu1.9","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.9","pocket":"security"},{"name":"qemu-keymaps","version":"2.0.0+dfsg-2ubuntu1.9","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.9","pocket":"security"},{"name":"qemu-kvm","version":"2.0.0+dfsg-2ubuntu1.9","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.9","pocket":"security"},{"name":"qemu-system","version":"2.0.0+dfsg-2ubuntu1.9","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.9","pocket":"security"},{"name":"qemu-system-aarch64","version":"2.0.0+dfsg-2ubuntu1.9","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.9","pocket":"security"},{"name":"qemu-system-arm","version":"2.0.0+dfsg-2ubuntu1.9","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.9","pocket":"security"},{"name":"qemu-system-common","version":"2.0.0+dfsg-2ubuntu1.9","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.9","pocket":"security"},{"name":"qemu-system-mips","version":"2.0.0+dfsg-2ubuntu1.9","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.9","pocket":"security"},{"name":"qemu-system-misc","version":"2.0.0+dfsg-2ubuntu1.9","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.9","pocket":"security"},{"name":"qemu-system-ppc","version":"2.0.0+dfsg-2ubuntu1.9","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.9","pocket":"security"},{"name":"qemu-system-sparc","version":"2.0.0+dfsg-2ubuntu1.9","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.9","pocket":"security"},{"name":"qemu-system-x86","version":"2.0.0+dfsg-2ubuntu1.9","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.9","pocket":"security"},{"name":"qemu-user","version":"2.0.0+dfsg-2ubuntu1.9","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.9","pocket":"security"},{"name":"qemu-user-static","version":"2.0.0+dfsg-2ubuntu1.9","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.9","pocket":"security"},{"name":"qemu-utils","version":"2.0.0+dfsg-2ubuntu1.9","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.9","pocket":"security"}],"utopic":[{"name":"qemu","version":"2.1+dfsg-4ubuntu6.3","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu-system","version":"2.1+dfsg-4ubuntu6.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.1+dfsg-4ubuntu6.3"},{"name":"qemu-system-aarch64","version":"2.1+dfsg-4ubuntu6.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.1+dfsg-4ubuntu6.3"},{"name":"qemu-system-arm","version":"2.1+dfsg-4ubuntu6.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.1+dfsg-4ubuntu6.3"},{"name":"qemu-system-mips","version":"2.1+dfsg-4ubuntu6.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.1+dfsg-4ubuntu6.3"},{"name":"qemu-system-misc","version":"2.1+dfsg-4ubuntu6.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.1+dfsg-4ubuntu6.3"},{"name":"qemu-system-ppc","version":"2.1+dfsg-4ubuntu6.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.1+dfsg-4ubuntu6.3"},{"name":"qemu-system-sparc","version":"2.1+dfsg-4ubuntu6.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.1+dfsg-4ubuntu6.3"},{"name":"qemu-system-x86","version":"2.1+dfsg-4ubuntu6.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.1+dfsg-4ubuntu6.3"}]},"type":"USN","cves_ids":["CVE-2014-7840","CVE-2014-8106"]}]},{"id":"CVE-2014-8554","published":"2014-11-13T21:32:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nSQL injection vulnerability in the mc_project_get_attachments function in\napi/soap/mc_project_api.php in MantisBT before 1.2.18 allows remote\nattackers to execute arbitrary SQL commands via the project_id parameter.\nNOTE: this vulnerability exists because of an incomplete fix for\nCVE-2014-1609.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.mantisbt.org/bugs/view.php?id=17812 (not yet accessible)","https://www.cve.org/CVERecord?id=CVE-2014-8554"],"bugs":[""],"patches":{"mantis":[]},"tags":{},"packages":[{"name":"mantis","source":"https://ubuntu.com/security/cve?package=mantis","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=mantis","debian":"https://tracker.debian.org/pkg/mantis","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"utopic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"vivid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"wily","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"zesty","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2014-8476","published":"2014-11-13T21:32:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe setlogin function in FreeBSD 8.4 through 10.1-RC4 does not initialize\nthe buffer used to store the login name, which allows local users to obtain\nsensitive information from kernel memory via a call to getlogin, which\nreturns the entire buffer.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://security.FreeBSD.org/advisories/FreeBSD-SA-14:25.setlogin.asc","https://www.cve.org/CVERecord?id=CVE-2014-8476"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=768106"],"patches":{"kfreebsd-8":["upstream: http://security.FreeBSD.org/patches/SA-14:25/setlogin.patch"]},"tags":{},"packages":[{"name":"kfreebsd-8","source":"https://ubuntu.com/security/cve?package=kfreebsd-8","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=kfreebsd-8","debian":"https://tracker.debian.org/pkg/kfreebsd-8","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"8.4-RELEASE-p19","component":null,"pocket":"security"},{"release_codename":"utopic","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2014-8716","published":"2014-11-12T00:00:00","updated_at":"2025-08-25T21:28:05.198536+00:00","description":"\nThe JPEG decoder in ImageMagick before 6.8.9-9 allows local users to cause\na denial of service (out-of-bounds memory access and crash).","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"This is 0005-Avoid-crash-and-DOS-with-special-crafted-jpeg-file.patch"}],"codename":null,"priority":"low","cvss3":6.2,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":6.2,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["http://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=26456","https://ubuntu.com/security/notices/USN-3131-1","https://www.cve.org/CVERecord?id=CVE-2014-8716"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=768494"],"patches":{"imagemagick":["upstream: http://trac.imagemagick.org/changeset/16872","upstream: https://github.com/ImageMagick/ImageMagick/commit/dca8d5892331a61bdfa90589d12551b9926d215a"]},"tags":{},"packages":[{"name":"imagemagick","source":"https://ubuntu.com/security/cve?package=imagemagick","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=imagemagick","debian":"https://tracker.debian.org/pkg/imagemagick","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"8:6.6.9.7-5ubuntu3.5","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"8:6.7.7.10-6ubuntu3.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"8:6.8.9.9-3","component":null,"pocket":"security"},{"release_codename":"utopic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"vivid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"wily","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"8:6.8.9.9-7ubuntu5","component":null,"pocket":"security"},{"release_codename":"yakkety","status":"not-affected","description":"8:6.8.9.9-7ubuntu8","component":null,"pocket":"security"}]}],"notices_ids":["USN-3131-1"],"notices":[{"id":"USN-3131-1","title":"ImageMagick vulnerabilities","summary":"Several security issues were fixed in ImageMagick.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2016-11-21T14:07:40.268837","description":"It was discovered that ImageMagick incorrectly handled certain malformed\nimage files. If a user or automated system using ImageMagick were tricked\ninto opening a specially crafted image, an attacker could exploit this to\ncause a denial of service or possibly execute code with the privileges of\nthe user invoking the program.\n","is_hidden":false,"release_packages":{"precise":[{"name":"imagemagick","version":"8:6.6.9.7-5ubuntu3.5","description":"Image manipulation programs and library","is_source":true},{"name":"imagemagick","version":"8:6.6.9.7-5ubuntu3.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.6.9.7-5ubuntu3.5"},{"name":"libmagick++4","version":"8:6.6.9.7-5ubuntu3.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.6.9.7-5ubuntu3.5"},{"name":"libmagickcore4","version":"8:6.6.9.7-5ubuntu3.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.6.9.7-5ubuntu3.5"},{"name":"libmagickcore4-extra","version":"8:6.6.9.7-5ubuntu3.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.6.9.7-5ubuntu3.5"}],"trusty":[{"name":"imagemagick","version":"8:6.7.7.10-6ubuntu3.2","description":"Image manipulation programs and library","is_source":true},{"name":"imagemagick","version":"8:6.7.7.10-6ubuntu3.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.7.7.10-6ubuntu3.2","pocket":"security"},{"name":"imagemagick-common","version":"8:6.7.7.10-6ubuntu3.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.7.7.10-6ubuntu3.2","pocket":"security"},{"name":"imagemagick-doc","version":"8:6.7.7.10-6ubuntu3.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.7.7.10-6ubuntu3.2","pocket":"security"},{"name":"libmagick++-dev","version":"8:6.7.7.10-6ubuntu3.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.7.7.10-6ubuntu3.2","pocket":"security"},{"name":"libmagick++5","version":"8:6.7.7.10-6ubuntu3.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.7.7.10-6ubuntu3.2","pocket":"security"},{"name":"libmagickcore-dev","version":"8:6.7.7.10-6ubuntu3.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.7.7.10-6ubuntu3.2","pocket":"security"},{"name":"libmagickcore5","version":"8:6.7.7.10-6ubuntu3.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.7.7.10-6ubuntu3.2","pocket":"security"},{"name":"libmagickcore5-extra","version":"8:6.7.7.10-6ubuntu3.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.7.7.10-6ubuntu3.2","pocket":"security"},{"name":"libmagickwand-dev","version":"8:6.7.7.10-6ubuntu3.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.7.7.10-6ubuntu3.2","pocket":"security"},{"name":"libmagickwand5","version":"8:6.7.7.10-6ubuntu3.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.7.7.10-6ubuntu3.2","pocket":"security"},{"name":"perlmagick","version":"8:6.7.7.10-6ubuntu3.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.7.7.10-6ubuntu3.2","pocket":"security"}],"xenial":[{"name":"imagemagick","version":"8:6.8.9.9-7ubuntu5.2","description":"Image manipulation programs and library","is_source":true},{"name":"imagemagick","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"imagemagick-6.q16","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"imagemagick-common","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"imagemagick-doc","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"libimage-magick-perl","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"libimage-magick-q16-perl","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"libmagick++-6-headers","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"libmagick++-6.q16-5v5","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"libmagick++-6.q16-dev","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"libmagick++-dev","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"libmagickcore-6-arch-config","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"libmagickcore-6-headers","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"libmagickcore-6.q16-2","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"libmagickcore-6.q16-2-extra","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"libmagickcore-6.q16-dev","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"libmagickcore-dev","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"libmagickwand-6-headers","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"libmagickwand-6.q16-2","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"libmagickwand-6.q16-dev","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"libmagickwand-dev","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"},{"name":"perlmagick","version":"8:6.8.9.9-7ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu5.2","pocket":"security"}],"yakkety":[{"name":"imagemagick","version":"8:6.8.9.9-7ubuntu8.1","description":"Image manipulation programs and library","is_source":true},{"name":"imagemagick","version":"8:6.8.9.9-7ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu8.1"},{"name":"imagemagick-6.q16","version":"8:6.8.9.9-7ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu8.1"},{"name":"libmagick++-6.q16-5v5","version":"8:6.8.9.9-7ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu8.1"},{"name":"libmagickcore-6.q16-2","version":"8:6.8.9.9-7ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu8.1"},{"name":"libmagickcore-6.q16-2-extra","version":"8:6.8.9.9-7ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/imagemagick","version_link":"https://launchpad.net/ubuntu/+source/imagemagick/8:6.8.9.9-7ubuntu8.1"}]},"type":"USN","cves_ids":["CVE-2014-8354","CVE-2014-8355","CVE-2014-8562","CVE-2014-8716","CVE-2014-9805","CVE-2014-9806","CVE-2014-9807","CVE-2014-9808","CVE-2014-9809","CVE-2014-9810","CVE-2014-9811","CVE-2014-9812","CVE-2014-9813","CVE-2014-9814","CVE-2014-9815","CVE-2014-9816","CVE-2014-9817","CVE-2014-9818","CVE-2014-9819","CVE-2014-9820","CVE-2014-9821","CVE-2014-9822","CVE-2014-9823","CVE-2014-9826","CVE-2014-9828","CVE-2014-9829","CVE-2014-9830","CVE-2014-9831","CVE-2014-9833","CVE-2014-9834","CVE-2014-9835","CVE-2014-9836","CVE-2014-9837","CVE-2014-9838","CVE-2014-9839","CVE-2014-9840","CVE-2014-9841","CVE-2014-9843","CVE-2014-9844","CVE-2014-9845","CVE-2014-9846","CVE-2014-9847","CVE-2014-9848","CVE-2014-9849","CVE-2014-9850","CVE-2014-9851","CVE-2014-9853","CVE-2014-9854","CVE-2014-9907","CVE-2015-8894","CVE-2015-8895","CVE-2015-8896","CVE-2015-8897","CVE-2015-8898","CVE-2015-8900","CVE-2015-8901","CVE-2015-8902","CVE-2015-8903","CVE-2015-8957","CVE-2015-8958","CVE-2015-8959","CVE-2016-4562","CVE-2016-4563","CVE-2016-4564","CVE-2016-5010","CVE-2016-5687","CVE-2016-5688","CVE-2016-5689","CVE-2016-5690","CVE-2016-5691","CVE-2016-5841","CVE-2016-5842","CVE-2016-6491","CVE-2016-6823","CVE-2016-7101","CVE-2016-7513","CVE-2016-7514","CVE-2016-7515","CVE-2016-7516","CVE-2016-7517","CVE-2016-7518","CVE-2016-7519","CVE-2016-7520","CVE-2016-7521","CVE-2016-7522","CVE-2016-7523","CVE-2016-7524","CVE-2016-7525","CVE-2016-7526","CVE-2016-7527","CVE-2016-7528","CVE-2016-7529","CVE-2016-7530","CVE-2016-7531","CVE-2016-7532","CVE-2016-7533","CVE-2016-7534","CVE-2016-7535","CVE-2016-7536","CVE-2016-7537","CVE-2016-7538","CVE-2016-7539","CVE-2016-7540"]}]},{"id":"CVE-2014-8442","published":"2014-11-11T23:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nAdobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on\nWindows and OS X and before 11.2.202.418 on Linux, Adobe AIR before\n15.0.0.356, Adobe AIR SDK before 15.0.0.356, and Adobe AIR SDK & Compiler\nbefore 15.0.0.356 allow attackers to complete a transition from Low\nIntegrity to Medium Integrity by leveraging incorrect permissions.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://helpx.adobe.com/security/products/flash-player/apsb14-24.html","https://www.cve.org/CVERecord?id=CVE-2014-8442"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418-0precise1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418-0trusty1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418-0utopic1","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418ubuntu0.14.10.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2014-8441","published":"2014-11-11T23:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nAdobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on\nWindows and OS X and before 11.2.202.418 on Linux, Adobe AIR before\n15.0.0.356, Adobe AIR SDK before 15.0.0.356, and Adobe AIR SDK & Compiler\nbefore 15.0.0.356 allow attackers to execute arbitrary code or cause a\ndenial of service (memory corruption) via unspecified vectors, a different\nvulnerability than CVE-2014-0576, CVE-2014-0581, and CVE-2014-8440.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://helpx.adobe.com/security/products/flash-player/apsb14-24.html","https://www.cve.org/CVERecord?id=CVE-2014-8441"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418-0precise1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418-0trusty1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418-0utopic1","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418ubuntu0.14.10.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2014-8440","published":"2014-11-11T23:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nAdobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on\nWindows and OS X and before 11.2.202.418 on Linux, Adobe AIR before\n15.0.0.356, Adobe AIR SDK before 15.0.0.356, and Adobe AIR SDK & Compiler\nbefore 15.0.0.356 allow attackers to execute arbitrary code or cause a\ndenial of service (memory corruption) via unspecified vectors, a different\nvulnerability than CVE-2014-0576, CVE-2014-0581, and CVE-2014-8441.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://helpx.adobe.com/security/products/flash-player/apsb14-24.html","https://www.cve.org/CVERecord?id=CVE-2014-8440"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418-0precise1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418-0trusty1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418-0utopic1","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418ubuntu0.14.10.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2014-8438","published":"2014-11-11T23:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUse-after-free vulnerability in Adobe Flash Player before 13.0.0.252 and\n14.x and 15.x before 15.0.0.223 on Windows and OS X and before 11.2.202.418\non Linux, Adobe AIR before 15.0.0.356, Adobe AIR SDK before 15.0.0.356, and\nAdobe AIR SDK & Compiler before 15.0.0.356 allows attackers to execute\narbitrary code via unspecified vectors, a different vulnerability than\nCVE-2014-0573 and CVE-2014-0588.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://helpx.adobe.com/security/products/flash-player/apsb14-24.html","https://www.cve.org/CVERecord?id=CVE-2014-8438"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418-0precise1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418-0trusty1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418-0utopic1","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418ubuntu0.14.10.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2014-8437","published":"2014-11-11T23:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nAdobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on\nWindows and OS X and before 11.2.202.418 on Linux, Adobe AIR before\n15.0.0.356, Adobe AIR SDK before 15.0.0.356, and Adobe AIR SDK & Compiler\nbefore 15.0.0.356 allow remote attackers to discover session tokens via\nunspecified vectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://helpx.adobe.com/security/products/flash-player/apsb14-24.html","https://www.cve.org/CVERecord?id=CVE-2014-8437"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418-0precise1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418-0trusty1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418-0utopic1","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418ubuntu0.14.10.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2014-0590","published":"2014-11-11T23:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nAdobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on\nWindows and OS X and before 11.2.202.418 on Linux, Adobe AIR before\n15.0.0.356, Adobe AIR SDK before 15.0.0.356, and Adobe AIR SDK & Compiler\nbefore 15.0.0.356 allow attackers to execute arbitrary code by leveraging\nan unspecified \"type confusion,\" a different vulnerability than\nCVE-2014-0577, CVE-2014-0584, CVE-2014-0585, and CVE-2014-0586.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://helpx.adobe.com/security/products/flash-player/apsb14-24.html","https://www.cve.org/CVERecord?id=CVE-2014-0590"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418-0precise1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418-0trusty1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418-0utopic1","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418ubuntu0.14.10.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2014-0589","published":"2014-11-11T23:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nHeap-based buffer overflow in Adobe Flash Player before 13.0.0.252 and 14.x\nand 15.x before 15.0.0.223 on Windows and OS X and before 11.2.202.418 on\nLinux, Adobe AIR before 15.0.0.356, Adobe AIR SDK before 15.0.0.356, and\nAdobe AIR SDK & Compiler before 15.0.0.356 allows attackers to execute\narbitrary code via unspecified vectors, a different vulnerability than\nCVE-2014-0582.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://helpx.adobe.com/security/products/flash-player/apsb14-24.html","https://www.cve.org/CVERecord?id=CVE-2014-0589"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418-0precise1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418-0trusty1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418-0utopic1","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418ubuntu0.14.10.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2014-0588","published":"2014-11-11T23:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nUse-after-free vulnerability in Adobe Flash Player before 13.0.0.252 and\n14.x and 15.x before 15.0.0.223 on Windows and OS X and before 11.2.202.418\non Linux, Adobe AIR before 15.0.0.356, Adobe AIR SDK before 15.0.0.356, and\nAdobe AIR SDK & Compiler before 15.0.0.356 allows attackers to execute\narbitrary code via unspecified vectors, a different vulnerability than\nCVE-2014-0573 and CVE-2014-8438.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://helpx.adobe.com/security/products/flash-player/apsb14-24.html","https://www.cve.org/CVERecord?id=CVE-2014-0588"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418-0precise1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418-0trusty1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418-0utopic1","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418ubuntu0.14.10.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2014-0586","published":"2014-11-11T23:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nAdobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on\nWindows and OS X and before 11.2.202.418 on Linux, Adobe AIR before\n15.0.0.356, Adobe AIR SDK before 15.0.0.356, and Adobe AIR SDK & Compiler\nbefore 15.0.0.356 allow attackers to execute arbitrary code by leveraging\nan unspecified \"type confusion,\" a different vulnerability than\nCVE-2014-0577, CVE-2014-0584, CVE-2014-0585, and CVE-2014-0590.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://helpx.adobe.com/security/products/flash-player/apsb14-24.html","https://www.cve.org/CVERecord?id=CVE-2014-0586"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418-0precise1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418-0trusty1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418-0utopic1","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418ubuntu0.14.10.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2014-0585","published":"2014-11-11T23:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nAdobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on\nWindows and OS X and before 11.2.202.418 on Linux, Adobe AIR before\n15.0.0.356, Adobe AIR SDK before 15.0.0.356, and Adobe AIR SDK & Compiler\nbefore 15.0.0.356 allow attackers to execute arbitrary code by leveraging\nan unspecified \"type confusion,\" a different vulnerability than\nCVE-2014-0577, CVE-2014-0584, CVE-2014-0586, and CVE-2014-0590.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://helpx.adobe.com/security/products/flash-player/apsb14-24.html","https://www.cve.org/CVERecord?id=CVE-2014-0585"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418-0precise1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418-0trusty1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418-0utopic1","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418ubuntu0.14.10.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2014-0584","published":"2014-11-11T23:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nAdobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on\nWindows and OS X and before 11.2.202.418 on Linux, Adobe AIR before\n15.0.0.356, Adobe AIR SDK before 15.0.0.356, and Adobe AIR SDK & Compiler\nbefore 15.0.0.356 allow attackers to execute arbitrary code by leveraging\nan unspecified \"type confusion,\" a different vulnerability than\nCVE-2014-0577, CVE-2014-0585, CVE-2014-0586, and CVE-2014-0590.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://helpx.adobe.com/security/products/flash-player/apsb14-24.html","https://www.cve.org/CVERecord?id=CVE-2014-0584"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418-0precise1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418-0trusty1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418-0utopic1","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418ubuntu0.14.10.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2014-0583","published":"2014-11-11T23:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nHeap-based buffer overflow in Adobe Flash Player before 13.0.0.252 and 14.x\nand 15.x before 15.0.0.223 on Windows and OS X and before 11.2.202.418 on\nLinux, Adobe AIR before 15.0.0.356, Adobe AIR SDK before 15.0.0.356, and\nAdobe AIR SDK & Compiler before 15.0.0.356 allows attackers to complete a\ntransition from Low Integrity to Medium Integrity via unspecified vectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://helpx.adobe.com/security/products/flash-player/apsb14-24.html","https://www.cve.org/CVERecord?id=CVE-2014-0583"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418-0precise1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418-0trusty1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418-0utopic1","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.418ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"11.2.202.418ubuntu0.14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.418","component":null,"pocket":"security"},{"release_codename":"utopic","status":"released","description":"11.2.202.418ubuntu0.14.10.1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]}],"offset":64520,"limit":20,"total_results":79316}