{"document":{"aggregate_severity":{"namespace":"https://www.suse.com/support/security/rating/","text":"important"},"category":"csaf_vex","csaf_version":"2.0","distribution":{"text":"Copyright 2024 SUSE LLC. All rights reserved.","tlp":{"label":"WHITE","url":"https://www.first.org/tlp/"}},"lang":"en","notes":[{"category":"summary","text":"SUSE CVE-2014-0503","title":"Title"},{"category":"description","text":"Adobe Flash Player before 11.7.700.272 and 11.8.x through 12.0.x before 12.0.0.77 on Windows and OS X, and before 11.2.202.346 on Linux, allows remote attackers to bypass the Same Origin Policy via unspecified vectors.","title":"Description of the CVE"},{"category":"legal_disclaimer","text":"CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).","title":"Terms of use"}],"publisher":{"category":"vendor","contact_details":"https://www.suse.com/support/security/contact/","name":"SUSE Product Security Team","namespace":"https://www.suse.com/"},"references":[{"category":"external","summary":"CVE-2014-0503","url":"https://www.suse.com/security/cve/CVE-2014-0503"},{"category":"external","summary":"SUSE Security Ratings","url":"https://www.suse.com/support/security/rating/"},{"category":"external","summary":"SUSE Bug 806415 for CVE-2014-0503","url":"https://bugzilla.suse.com/806415"},{"category":"external","summary":"SUSE Bug 867808 for CVE-2014-0503","url":"https://bugzilla.suse.com/867808"},{"category":"external","summary":"Advisory link for SUSE-SU-2014:0387-1","url":"https://lists.suse.com/pipermail/sle-security-updates/2014-March/000754.html"},{"category":"external","summary":"Advisory link for openSUSE-SU-2014:0377-1","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/NHZ7ZSPO2BXTHGIKZGXPA6EE4MZDIITW/#NHZ7ZSPO2BXTHGIKZGXPA6EE4MZDIITW"},{"category":"external","summary":"Advisory link for openSUSE-SU-2014:0379-1","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/V4WAKBIELPOVGVI7HVTWLRYTAUSQW6ED/#V4WAKBIELPOVGVI7HVTWLRYTAUSQW6ED"}],"title":"SUSE CVE CVE-2014-0503","tracking":{"current_release_date":"2025-07-29T23:51:23Z","generator":{"date":"2023-02-15T05:31:58Z","engine":{"name":"cve-database.git:bin/generate-csaf-vex.pl","version":"1"}},"id":"CVE-2014-0503","initial_release_date":"2023-02-15T05:31:58Z","revision_history":[{"date":"2023-02-15T05:31:58Z","number":"2","summary":"Current version"},{"date":"2023-12-08T04:52:46Z","number":"3","summary":"Current version"},{"date":"2023-12-09T03:23:43Z","number":"4","summary":"Current version"},{"date":"2025-03-14T06:52:53Z","number":"5","summary":"Current version"},{"date":"2025-03-16T12:26:47Z","number":"6","summary":"Current version"},{"date":"2025-04-25T12:00:15Z","number":"7","summary":"Current version"},{"date":"2025-07-29T23:51:23Z","number":"8","summary":"Current version"}],"status":"interim","version":"8"}},"product_tree":{"branches":[{"branches":[{"branches":[{"category":"product_name","name":"SUSE Linux Enterprise Desktop 11 SP3","product":{"name":"SUSE Linux Enterprise Desktop 11 SP3","product_id":"SUSE Linux Enterprise Desktop 11 SP3","product_identification_helper":{"cpe":"cpe:/o:suse:suse_sled:11:sp3"}}},{"category":"product_name","name":"SUSE Linux Enterprise Desktop 12","product":{"name":"SUSE Linux Enterprise Desktop 12","product_id":"SUSE Linux Enterprise Desktop 12","product_identification_helper":{"cpe":"cpe:/o:suse:sled:12"}}},{"category":"product_name","name":"SUSE Linux Enterprise Desktop 12 SP1","product":{"name":"SUSE Linux Enterprise Desktop 12 SP1","product_id":"SUSE Linux Enterprise Desktop 12 SP1","product_identification_helper":{"cpe":"cpe:/o:suse:sled:12:sp1"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 12","product":{"name":"SUSE Linux Enterprise Server 12","product_id":"SUSE Linux Enterprise Server 12","product_identification_helper":{"cpe":"cpe:/o:suse:sles:12"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 12 SP1","product":{"name":"SUSE Linux Enterprise Server 12 SP1","product_id":"SUSE Linux Enterprise Server 12 SP1","product_identification_helper":{"cpe":"cpe:/o:suse:sles:12:sp1"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server for SAP Applications 12","product":{"name":"SUSE Linux Enterprise Server for SAP Applications 12","product_id":"SUSE Linux Enterprise Server for SAP Applications 12","product_identification_helper":{"cpe":"cpe:/o:suse:sles_sap:12"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server for SAP Applications 12 SP1","product":{"name":"SUSE Linux Enterprise Server for SAP Applications 12 SP1","product_id":"SUSE Linux Enterprise Server for SAP Applications 12 SP1","product_identification_helper":{"cpe":"cpe:/o:suse:sles_sap:12:sp1"}}},{"category":"product_name","name":"SUSE Linux Enterprise Workstation Extension 12","product":{"name":"SUSE Linux Enterprise Workstation Extension 12","product_id":"SUSE Linux Enterprise Workstation Extension 12","product_identification_helper":{"cpe":"cpe:/o:suse:sle-we:12"}}},{"category":"product_name","name":"SUSE Linux Enterprise Workstation Extension 12 SP1","product":{"name":"SUSE Linux Enterprise Workstation Extension 12 SP1","product_id":"SUSE Linux Enterprise Workstation Extension 12 SP1","product_identification_helper":{"cpe":"cpe:/o:suse:sle-we:12:sp1"}}},{"category":"product_version","name":"flash-player-11.2.202.346-0.3.1","product":{"name":"flash-player-11.2.202.346-0.3.1","product_id":"flash-player-11.2.202.346-0.3.1","product_identification_helper":{"cpe":"cpe:2.3:a:adobe:flash_player:11.2.202.346:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/flash-player@11.2.202.346-0.3.1?upstream=flash-player-11.2.202.346-0.3.1.src.rpm"}}},{"category":"product_version","name":"flash-player-11.2.202.406-1.3","product":{"name":"flash-player-11.2.202.406-1.3","product_id":"flash-player-11.2.202.406-1.3","product_identification_helper":{"cpe":"cpe:2.3:a:adobe:flash_player:11.2.202.406:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/flash-player@11.2.202.406-1.3?upstream=flash-player-11.2.202.406-1.3.src.rpm"}}},{"category":"product_version","name":"flash-player-11.2.202.548-111.1","product":{"name":"flash-player-11.2.202.548-111.1","product_id":"flash-player-11.2.202.548-111.1","product_identification_helper":{"cpe":"cpe:2.3:a:adobe:flash_player:11.2.202.548:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/flash-player@11.2.202.548-111.1?upstream=flash-player-11.2.202.548-111.1.src.rpm"}}},{"category":"product_version","name":"flash-player-gnome-11.2.202.346-0.3.1","product":{"name":"flash-player-gnome-11.2.202.346-0.3.1","product_id":"flash-player-gnome-11.2.202.346-0.3.1","product_identification_helper":{"cpe":"cpe:2.3:a:adobe:flash_player:11.2.202.346:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/flash-player-gnome@11.2.202.346-0.3.1?upstream=flash-player-11.2.202.346-0.3.1.src.rpm"}}},{"category":"product_version","name":"flash-player-gnome-11.2.202.406-1.3","product":{"name":"flash-player-gnome-11.2.202.406-1.3","product_id":"flash-player-gnome-11.2.202.406-1.3","product_identification_helper":{"cpe":"cpe:2.3:a:adobe:flash_player:11.2.202.406:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/flash-player-gnome@11.2.202.406-1.3?upstream=flash-player-11.2.202.406-1.3.src.rpm"}}},{"category":"product_version","name":"flash-player-gnome-11.2.202.548-111.1","product":{"name":"flash-player-gnome-11.2.202.548-111.1","product_id":"flash-player-gnome-11.2.202.548-111.1","product_identification_helper":{"cpe":"cpe:2.3:a:adobe:flash_player:11.2.202.548:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/flash-player-gnome@11.2.202.548-111.1?upstream=flash-player-11.2.202.548-111.1.src.rpm"}}},{"category":"product_version","name":"flash-player-kde4-11.2.202.346-0.3.1","product":{"name":"flash-player-kde4-11.2.202.346-0.3.1","product_id":"flash-player-kde4-11.2.202.346-0.3.1","product_identification_helper":{"cpe":"cpe:2.3:a:adobe:flash_player:11.2.202.346:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/flash-player-kde4@11.2.202.346-0.3.1?upstream=flash-player-11.2.202.346-0.3.1.src.rpm"}}}],"category":"product_family","name":"SUSE Linux Enterprise"}],"category":"vendor","name":"SUSE"}],"relationships":[{"category":"default_component_of","full_product_name":{"name":"flash-player-11.2.202.346-0.3.1 as component of SUSE Linux Enterprise Desktop 11 SP3","product_id":"SUSE Linux Enterprise Desktop 11 SP3:flash-player-11.2.202.346-0.3.1"},"product_reference":"flash-player-11.2.202.346-0.3.1","relates_to_product_reference":"SUSE Linux Enterprise Desktop 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"flash-player-gnome-11.2.202.346-0.3.1 as component of SUSE Linux Enterprise Desktop 11 SP3","product_id":"SUSE Linux Enterprise Desktop 11 SP3:flash-player-gnome-11.2.202.346-0.3.1"},"product_reference":"flash-player-gnome-11.2.202.346-0.3.1","relates_to_product_reference":"SUSE Linux Enterprise Desktop 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"flash-player-kde4-11.2.202.346-0.3.1 as component of SUSE Linux Enterprise Desktop 11 SP3","product_id":"SUSE Linux Enterprise Desktop 11 SP3:flash-player-kde4-11.2.202.346-0.3.1"},"product_reference":"flash-player-kde4-11.2.202.346-0.3.1","relates_to_product_reference":"SUSE Linux Enterprise Desktop 11 SP3"},{"category":"default_component_of","full_product_name":{"name":"flash-player-11.2.202.406-1.3 as component of SUSE Linux Enterprise Desktop 12","product_id":"SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.406-1.3"},"product_reference":"flash-player-11.2.202.406-1.3","relates_to_product_reference":"SUSE Linux Enterprise Desktop 12"},{"category":"default_component_of","full_product_name":{"name":"flash-player-gnome-11.2.202.406-1.3 as component of SUSE Linux Enterprise Desktop 12","product_id":"SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.406-1.3"},"product_reference":"flash-player-gnome-11.2.202.406-1.3","relates_to_product_reference":"SUSE Linux Enterprise Desktop 12"},{"category":"default_component_of","full_product_name":{"name":"flash-player-11.2.202.548-111.1 as component of SUSE Linux Enterprise Desktop 12 SP1","product_id":"SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.548-111.1"},"product_reference":"flash-player-11.2.202.548-111.1","relates_to_product_reference":"SUSE Linux Enterprise Desktop 12 SP1"},{"category":"default_component_of","full_product_name":{"name":"flash-player-gnome-11.2.202.548-111.1 as component of SUSE Linux Enterprise Desktop 12 SP1","product_id":"SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.548-111.1"},"product_reference":"flash-player-gnome-11.2.202.548-111.1","relates_to_product_reference":"SUSE Linux Enterprise Desktop 12 SP1"},{"category":"default_component_of","full_product_name":{"name":"flash-player-11.2.202.406-1.3 as component of SUSE Linux Enterprise Server 12","product_id":"SUSE Linux Enterprise Server 12:flash-player-11.2.202.406-1.3"},"product_reference":"flash-player-11.2.202.406-1.3","relates_to_product_reference":"SUSE Linux Enterprise Server 12"},{"category":"default_component_of","full_product_name":{"name":"flash-player-gnome-11.2.202.406-1.3 as component of SUSE Linux Enterprise Server 12","product_id":"SUSE Linux Enterprise Server 12:flash-player-gnome-11.2.202.406-1.3"},"product_reference":"flash-player-gnome-11.2.202.406-1.3","relates_to_product_reference":"SUSE Linux Enterprise Server 12"},{"category":"default_component_of","full_product_name":{"name":"flash-player-11.2.202.406-1.3 as component of SUSE Linux Enterprise Server for SAP Applications 12","product_id":"SUSE Linux Enterprise Server for SAP Applications 12:flash-player-11.2.202.406-1.3"},"product_reference":"flash-player-11.2.202.406-1.3","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 12"},{"category":"default_component_of","full_product_name":{"name":"flash-player-gnome-11.2.202.406-1.3 as component of SUSE Linux Enterprise Server for SAP Applications 12","product_id":"SUSE Linux Enterprise Server for SAP Applications 12:flash-player-gnome-11.2.202.406-1.3"},"product_reference":"flash-player-gnome-11.2.202.406-1.3","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 12"},{"category":"default_component_of","full_product_name":{"name":"flash-player-11.2.202.406-1.3 as component of SUSE Linux Enterprise Workstation Extension 12","product_id":"SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.406-1.3"},"product_reference":"flash-player-11.2.202.406-1.3","relates_to_product_reference":"SUSE Linux Enterprise Workstation Extension 12"},{"category":"default_component_of","full_product_name":{"name":"flash-player-gnome-11.2.202.406-1.3 as component of SUSE Linux Enterprise Workstation Extension 12","product_id":"SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.406-1.3"},"product_reference":"flash-player-gnome-11.2.202.406-1.3","relates_to_product_reference":"SUSE Linux Enterprise Workstation Extension 12"},{"category":"default_component_of","full_product_name":{"name":"flash-player-11.2.202.548-111.1 as component of SUSE Linux Enterprise Server 12 SP1","product_id":"SUSE Linux Enterprise Server 12 SP1:flash-player-11.2.202.548-111.1"},"product_reference":"flash-player-11.2.202.548-111.1","relates_to_product_reference":"SUSE Linux Enterprise Server 12 SP1"},{"category":"default_component_of","full_product_name":{"name":"flash-player-gnome-11.2.202.548-111.1 as component of SUSE Linux Enterprise Server 12 SP1","product_id":"SUSE Linux Enterprise Server 12 SP1:flash-player-gnome-11.2.202.548-111.1"},"product_reference":"flash-player-gnome-11.2.202.548-111.1","relates_to_product_reference":"SUSE Linux Enterprise Server 12 SP1"},{"category":"default_component_of","full_product_name":{"name":"flash-player-11.2.202.548-111.1 as component of SUSE Linux Enterprise Server for SAP Applications 12 SP1","product_id":"SUSE Linux Enterprise Server for SAP Applications 12 SP1:flash-player-11.2.202.548-111.1"},"product_reference":"flash-player-11.2.202.548-111.1","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 12 SP1"},{"category":"default_component_of","full_product_name":{"name":"flash-player-gnome-11.2.202.548-111.1 as component of SUSE Linux Enterprise Server for SAP Applications 12 SP1","product_id":"SUSE Linux Enterprise Server for SAP Applications 12 SP1:flash-player-gnome-11.2.202.548-111.1"},"product_reference":"flash-player-gnome-11.2.202.548-111.1","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 12 SP1"},{"category":"default_component_of","full_product_name":{"name":"flash-player-11.2.202.548-111.1 as component of SUSE Linux Enterprise Workstation Extension 12 SP1","product_id":"SUSE Linux Enterprise Workstation Extension 12 SP1:flash-player-11.2.202.548-111.1"},"product_reference":"flash-player-11.2.202.548-111.1","relates_to_product_reference":"SUSE Linux Enterprise Workstation Extension 12 SP1"},{"category":"default_component_of","full_product_name":{"name":"flash-player-gnome-11.2.202.548-111.1 as component of SUSE Linux Enterprise Workstation Extension 12 SP1","product_id":"SUSE Linux Enterprise Workstation Extension 12 SP1:flash-player-gnome-11.2.202.548-111.1"},"product_reference":"flash-player-gnome-11.2.202.548-111.1","relates_to_product_reference":"SUSE Linux Enterprise Workstation Extension 12 SP1"}]},"vulnerabilities":[{"cve":"CVE-2014-0503","ids":[{"system_name":"SUSE CVE Page","text":"https://www.suse.com/security/cve/CVE-2014-0503"}],"notes":[{"category":"general","text":"Adobe Flash Player before 11.7.700.272 and 11.8.x through 12.0.x before 12.0.0.77 on Windows and OS X, and before 11.2.202.346 on Linux, allows remote attackers to bypass the Same Origin Policy via unspecified vectors.","title":"CVE description"}],"product_status":{"recommended":["SUSE Linux Enterprise Desktop 11 SP3:flash-player-11.2.202.346-0.3.1","SUSE Linux Enterprise Desktop 11 SP3:flash-player-gnome-11.2.202.346-0.3.1","SUSE Linux Enterprise Desktop 11 SP3:flash-player-kde4-11.2.202.346-0.3.1","SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.548-111.1","SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.548-111.1","SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.406-1.3","SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.406-1.3","SUSE Linux Enterprise Server 12 SP1:flash-player-11.2.202.548-111.1","SUSE Linux Enterprise Server 12 SP1:flash-player-gnome-11.2.202.548-111.1","SUSE Linux Enterprise Server 12:flash-player-11.2.202.406-1.3","SUSE Linux Enterprise Server 12:flash-player-gnome-11.2.202.406-1.3","SUSE Linux Enterprise Server for SAP Applications 12 SP1:flash-player-11.2.202.548-111.1","SUSE Linux Enterprise Server for SAP Applications 12 SP1:flash-player-gnome-11.2.202.548-111.1","SUSE Linux Enterprise Server for SAP Applications 12:flash-player-11.2.202.406-1.3","SUSE Linux Enterprise Server for SAP Applications 12:flash-player-gnome-11.2.202.406-1.3","SUSE Linux Enterprise Workstation Extension 12 SP1:flash-player-11.2.202.548-111.1","SUSE Linux Enterprise Workstation Extension 12 SP1:flash-player-gnome-11.2.202.548-111.1","SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.406-1.3","SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.406-1.3"]},"references":[{"category":"external","summary":"CVE-2014-0503","url":"https://www.suse.com/security/cve/CVE-2014-0503"},{"category":"external","summary":"SUSE Security Ratings","url":"https://www.suse.com/support/security/rating/"},{"category":"external","summary":"SUSE Bug 806415 for CVE-2014-0503","url":"https://bugzilla.suse.com/806415"},{"category":"external","summary":"SUSE Bug 867808 for CVE-2014-0503","url":"https://bugzilla.suse.com/867808"},{"category":"external","summary":"Advisory link for SUSE-SU-2014:0387-1","url":"https://lists.suse.com/pipermail/sle-security-updates/2014-March/000754.html"},{"category":"external","summary":"Advisory link for openSUSE-SU-2014:0377-1","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/NHZ7ZSPO2BXTHGIKZGXPA6EE4MZDIITW/#NHZ7ZSPO2BXTHGIKZGXPA6EE4MZDIITW"},{"category":"external","summary":"Advisory link for openSUSE-SU-2014:0379-1","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/V4WAKBIELPOVGVI7HVTWLRYTAUSQW6ED/#V4WAKBIELPOVGVI7HVTWLRYTAUSQW6ED"}],"remediations":[{"category":"vendor_fix","details":"To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n","product_ids":["SUSE Linux Enterprise Desktop 11 SP3:flash-player-11.2.202.346-0.3.1","SUSE Linux Enterprise Desktop 11 SP3:flash-player-gnome-11.2.202.346-0.3.1","SUSE Linux Enterprise Desktop 11 SP3:flash-player-kde4-11.2.202.346-0.3.1","SUSE Linux Enterprise Desktop 12 SP1:flash-player-11.2.202.548-111.1","SUSE Linux Enterprise Desktop 12 SP1:flash-player-gnome-11.2.202.548-111.1","SUSE Linux Enterprise Desktop 12:flash-player-11.2.202.406-1.3","SUSE Linux Enterprise Desktop 12:flash-player-gnome-11.2.202.406-1.3","SUSE Linux Enterprise Server 12 SP1:flash-player-11.2.202.548-111.1","SUSE Linux Enterprise Server 12 SP1:flash-player-gnome-11.2.202.548-111.1","SUSE Linux Enterprise Server 12:flash-player-11.2.202.406-1.3","SUSE Linux Enterprise Server 12:flash-player-gnome-11.2.202.406-1.3","SUSE Linux Enterprise Server for SAP Applications 12 SP1:flash-player-11.2.202.548-111.1","SUSE Linux Enterprise Server for SAP Applications 12 SP1:flash-player-gnome-11.2.202.548-111.1","SUSE Linux Enterprise Server for SAP Applications 12:flash-player-11.2.202.406-1.3","SUSE Linux Enterprise Server for SAP Applications 12:flash-player-gnome-11.2.202.406-1.3","SUSE Linux Enterprise Workstation Extension 12 SP1:flash-player-11.2.202.548-111.1","SUSE Linux Enterprise Workstation Extension 12 SP1:flash-player-gnome-11.2.202.548-111.1","SUSE Linux Enterprise Workstation Extension 12:flash-player-11.2.202.406-1.3","SUSE Linux Enterprise Workstation Extension 12:flash-player-gnome-11.2.202.406-1.3"]}],"threats":[{"category":"impact","date":"2013-06-28T06:58:15Z","details":"important"}],"title":"CVE-2014-0503"}]}