Candidate: CVE-2020-9633 PublicDate: 2020-06-12 14:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-9633 https://helpx.adobe.com/security/products/flash-player/apsb20-30.html https://security.gentoo.org/glsa/202006-09 Description: Adobe Flash Player Desktop Runtime 32.0.0.371 and earlier, Adobe Flash Player for Google Chrome 32.0.0.371 and earlier, and Adobe Flash Player for Microsoft Edge and Internet Explorer 32.0.0.330 and earlier have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution. Ubuntu-Description: Notes: Mitigation: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H [9.8 CRITICAL] Patches_flashplugin-nonfree: upstream_flashplugin-nonfree: released (32.0.0.387) precise/esm_flashplugin-nonfree: DNE trusty_flashplugin-nonfree: ignored (out of standard support) trusty/esm_flashplugin-nonfree: DNE xenial_flashplugin-nonfree: released (32.0.0.387ubuntu0.16.04.1) bionic_flashplugin-nonfree: released (32.0.0.387ubuntu0.18.04.1) eoan_flashplugin-nonfree: released (32.0.0.387ubuntu0.19.10.1) focal_flashplugin-nonfree: released (32.0.0.387ubuntu0.20.04.1) devel_flashplugin-nonfree: released (32.0.0.387ubuntu1) Patches_adobe-flashplugin: upstream_adobe-flashplugin: released (32.0.0.387) precise/esm_adobe-flashplugin: DNE trusty_adobe-flashplugin: ignored (out of standard support) trusty/esm_adobe-flashplugin: DNE xenial_adobe-flashplugin: released (1:20200609.1-0ubuntu0.16.04.1) bionic_adobe-flashplugin: released (1:20200609.1-0ubuntu0.18.04.1) eoan_adobe-flashplugin: released (1:20200609.1-0ubuntu0.19.10.1) focal_adobe-flashplugin: released (1:20200609.1-0ubuntu0.20.04.1) devel_adobe-flashplugin: released (1:20200609.1-0ubuntu1)