Package: flashplugin-nonfree Version: 1:3.6.1 According to <URL: https://people.canonical.com/~ubuntu-security/cve/2016/CVE-2016-1019.html > Ubuntu is affected by CVE-2016-1019:
Adobe Flash Player 21.0.0.197 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unspecified vectors, as exploited in the wild in April 2016. Is Debian affected too? I was unable to find any conclusive answer, so I thought it best to ask here. <URL: https://security-tracker.debian.org/tracker/CVE-2016-1019 > so far only notes 'check', which I suspect mean it need to be manually verified by someone. Did you verify it? -- Happy hacking Petter Reinholdtsen

