Received: by mail.netbsd.org (Postfix, from userid 605) id 08CBA84D45; Thu, 8 Feb 2018 14:48:30 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by mail.netbsd.org (Postfix) with ESMTP id 862CE84D71 for ; Thu, 8 Feb 2018 14:48:29 +0000 (UTC) X-Virus-Scanned: amavisd-new at netbsd.org Received: from mail.netbsd.org ([IPv6:::1]) by localhost (mail.netbsd.org [IPv6:::1]) (amavisd-new, port 10025) with ESMTP id Jh_JsUW0kZXW for ; Thu, 8 Feb 2018 14:48:29 +0000 (UTC) Received: from cvs.NetBSD.org (ivanova.netbsd.org [199.233.217.197]) by mail.netbsd.org (Postfix) with ESMTP id F004784CED for ; Thu, 8 Feb 2018 14:48:28 +0000 (UTC) Received: by cvs.NetBSD.org (Postfix, from userid 500) id BC1B9FB40; Thu, 8 Feb 2018 14:48:28 +0000 (UTC) Content-Transfer-Encoding: 7bit Content-Type: multipart/mixed; boundary="_----------=_1518101308225320" MIME-Version: 1.0 Date: Thu, 8 Feb 2018 14:48:28 +0000 From: "Izumi Tsutsui" Subject: CVS commit: pkgsrc/multimedia/adobe-flash-player To: pkgsrc-changes@NetBSD.org Reply-To: tsutsui@netbsd.org X-Mailer: log_accum Message-Id: <20180208144828.BC1B9FB40@cvs.NetBSD.org> Sender: pkgsrc-changes-owner@NetBSD.org List-Id: pkgsrc-changes.NetBSD.org Precedence: bulk List-Unsubscribe: This is a multi-part message in MIME format. --_----------=_1518101308225320 Content-Disposition: inline Content-Transfer-Encoding: 8bit Content-Type: text/plain; charset="US-ASCII" Module Name: pkgsrc Committed By: tsutsui Date: Thu Feb 8 14:48:28 UTC 2018 Modified Files: pkgsrc/multimedia/adobe-flash-player: Makefile distinfo Log Message: adobe-flash-player: update to 28.0.0.161. Upstream announcement: https://helpx.adobe.com/security/products/flash-player/apsb18-03.html Adobe Security Bulletin Security updates available for Flash Player | APSB18-03 Summary Adobe has released security updates for Adobe Flash Player for Windows, Macintosh, Linux and Chrome OS. These updates address critical vulnerabilities that could lead to remote code execution in Adobe Flash Player 28.0.0.137 and earlier versions. Successful exploitation could potentially allow an attacker to take control of the affected system. Adobe is aware of a report that an exploit for CVE-2018-4878 exists in the wild, and is being used in limited, targeted attacks against Windows users. These attacks leverage Office documents with embedded malicious Flash content distributed via email. To generate a diff of this commit: cvs rdiff -u -r1.16 -r1.17 pkgsrc/multimedia/adobe-flash-player/Makefile cvs rdiff -u -r1.15 -r1.16 pkgsrc/multimedia/adobe-flash-player/distinfo Please note that diffs are not public domain; they are subject to the copyright notices on the relevant files. --_----------=_1518101308225320 Content-Disposition: inline Content-Length: 3287 Content-Transfer-Encoding: binary Content-Type: text/x-diff; charset=us-ascii Modified files: Index: pkgsrc/multimedia/adobe-flash-player/Makefile diff -u pkgsrc/multimedia/adobe-flash-player/Makefile:1.16 pkgsrc/multimedia/adobe-flash-player/Makefile:1.17 --- pkgsrc/multimedia/adobe-flash-player/Makefile:1.16 Fri Jan 12 14:48:30 2018 +++ pkgsrc/multimedia/adobe-flash-player/Makefile Thu Feb 8 14:48:28 2018 @@ -1,6 +1,6 @@ -# $NetBSD: Makefile,v 1.16 2018/01/12 14:48:30 tsutsui Exp $ +# $NetBSD: Makefile,v 1.17 2018/02/08 14:48:28 tsutsui Exp $ -FLASH_VERSION= 28.0.0.137 +FLASH_VERSION= 28.0.0.161 DISTNAME= flash_player_npapi_linux.${FLASH_ARCH} PKGNAME= adobe-flash-player-${FLASH_VERSION} DIST_SUBDIR= ${PKGNAME_NOREV} Index: pkgsrc/multimedia/adobe-flash-player/distinfo diff -u pkgsrc/multimedia/adobe-flash-player/distinfo:1.15 pkgsrc/multimedia/adobe-flash-player/distinfo:1.16 --- pkgsrc/multimedia/adobe-flash-player/distinfo:1.15 Fri Jan 12 14:48:30 2018 +++ pkgsrc/multimedia/adobe-flash-player/distinfo Thu Feb 8 14:48:28 2018 @@ -1,10 +1,10 @@ -$NetBSD: distinfo,v 1.15 2018/01/12 14:48:30 tsutsui Exp $ +$NetBSD: distinfo,v 1.16 2018/02/08 14:48:28 tsutsui Exp $ -SHA1 (adobe-flash-player-28.0.0.137/flash_player_npapi_linux.i386.tar.gz) = eca3c31ef614f7eef718e473f6d8c5bba231cab8 -RMD160 (adobe-flash-player-28.0.0.137/flash_player_npapi_linux.i386.tar.gz) = 86a223438f57d5d01f27531ced2b13ebecedcb48 -SHA512 (adobe-flash-player-28.0.0.137/flash_player_npapi_linux.i386.tar.gz) = 37d5664096876adfe70d008277e0cb1bacf1264f8ca8270e4e775b17bcf7e032dcf5f4a0b13f77b6fd30184d07b3460698db48fd28a92f6820d702cab9891ae8 -Size (adobe-flash-player-28.0.0.137/flash_player_npapi_linux.i386.tar.gz) = 8511300 bytes -SHA1 (adobe-flash-player-28.0.0.137/flash_player_npapi_linux.x86_64.tar.gz) = 632c479f83bfd2a4d814b565c0b1badab81a36f0 -RMD160 (adobe-flash-player-28.0.0.137/flash_player_npapi_linux.x86_64.tar.gz) = 35e63d88f3e1256dee891345e9ee42c82a298813 -SHA512 (adobe-flash-player-28.0.0.137/flash_player_npapi_linux.x86_64.tar.gz) = 07d0284296e4f6dbd8a7351da968cfdb4dff1885a997735b8e97f8c7a87c892241758cba376cd3b1ea059d26818111790fe1d3d665c4babaaeb7ae645a990a15 -Size (adobe-flash-player-28.0.0.137/flash_player_npapi_linux.x86_64.tar.gz) = 9027156 bytes +SHA1 (adobe-flash-player-28.0.0.161/flash_player_npapi_linux.i386.tar.gz) = 038bcd4f0abb8b4296e44c7884a6e1fae0a3e177 +RMD160 (adobe-flash-player-28.0.0.161/flash_player_npapi_linux.i386.tar.gz) = f45172f1aa357e2ce5553b336c87addcd8aaa2cb +SHA512 (adobe-flash-player-28.0.0.161/flash_player_npapi_linux.i386.tar.gz) = f3bd5d31528eb412c29b0cf225da66c77d4e3626185be200741e7c6956f6b125a21dca2bc50252cd2d9f888dbf0d3b3634290076ab82dfa5d619f293fe1ed95a +Size (adobe-flash-player-28.0.0.161/flash_player_npapi_linux.i386.tar.gz) = 8513055 bytes +SHA1 (adobe-flash-player-28.0.0.161/flash_player_npapi_linux.x86_64.tar.gz) = 92521f5d2d04600f32fdd1595fb61cd23e384d98 +RMD160 (adobe-flash-player-28.0.0.161/flash_player_npapi_linux.x86_64.tar.gz) = cfb5db3e6e0b7268813e143b75b645d2d762aa8d +SHA512 (adobe-flash-player-28.0.0.161/flash_player_npapi_linux.x86_64.tar.gz) = 1ee0eddc64bcd0456836296709e64dad29dd8f89589b1f7f9d685b52cdb2896ac6b4a11274362afec87732d9bd101d1e6927083515ad7243a64672a95cab3423 +Size (adobe-flash-player-28.0.0.161/flash_player_npapi_linux.x86_64.tar.gz) = 9031862 bytes --_----------=_1518101308225320--