diff -Nru /tmp/LMR4VSLMtD/flashplugin-nonfree-9.0.48.0.0ubuntu1~7.04.0/debian/changelog /tmp/3zNW5HFEVb/flashplugin-nonfree-9.0.48.0.0ubuntu2~7.04.0/debian/changelog --- /tmp/LMR4VSLMtD/flashplugin-nonfree-9.0.48.0.0ubuntu1~7.04.0/debian/changelog 2007-07-13 07:27:10.000000000 -0400 +++ /tmp/3zNW5HFEVb/flashplugin-nonfree-9.0.48.0.0ubuntu2~7.04.0/debian/changelog 2007-07-14 12:50:15.000000000 -0400 @@ -1,3 +1,14 @@ +flashplugin-nonfree (9.0.48.0.0ubuntu2~7.04.0) feisty-proposed; urgency=low + + * SECURITY UPDATE: Arbitrary code execution due to insufficient input + validation (LP: #125233) + * References + http://www.adobe.com/support/security/bulletins/apsb07-12.html + CVE-2007-3456, CVE-2007-3457, CVE-2007-2022 + * debian/config: Update install_flash_player_9_linux.tar.gz's md5sum + + -- John Vivirito Sat, 14 Jul 2007 12:49:38 -0400 + flashplugin-nonfree (9.0.48.0.0ubuntu1~7.04.0) feisty-proposed; urgency=low * SRU to fix "fail to install flashplugin-nonfree" grave bug diff -Nru /tmp/LMR4VSLMtD/flashplugin-nonfree-9.0.48.0.0ubuntu1~7.04.0/debian/config /tmp/3zNW5HFEVb/flashplugin-nonfree-9.0.48.0.0ubuntu2~7.04.0/debian/config --- /tmp/LMR4VSLMtD/flashplugin-nonfree-9.0.48.0.0ubuntu1~7.04.0/debian/config 2007-02-19 12:57:46.000000000 -0500 +++ /tmp/3zNW5HFEVb/flashplugin-nonfree-9.0.48.0.0ubuntu2~7.04.0/debian/config 2007-07-14 12:48:12.000000000 -0400 @@ -22,12 +22,12 @@ rmdir $OLDDIR 2> /dev/null || true db_get flashplugin-nonfree/local -echo "76b38231a68995935185aa42dfda9db7 $RET/install_flash_player_9_linux.tar.gz" \ +echo "821cc72359a937caef85bb4cc74ef5cd $RET/install_flash_player_9_linux.tar.gz" \ | md5sum -c > /dev/null 2>&1 \ || db_set flashplugin-nonfree/local /var/cache/flashplugin-nonfree db_get flashplugin-nonfree/local -echo "76b38231a68995935185aa42dfda9db7 $RET/install_flash_player_9_linux.tar.gz" \ +echo "821cc72359a937caef85bb4cc74ef5cd $RET/install_flash_player_9_linux.tar.gz" \ | md5sum -c > /dev/null 2>&1 \ || db_reset flashplugin-nonfree/local