PDA

View Full Version : Adobe warns of critical Flash Player flaws



dinamic1
August 11th, 2010, 06:48 PM
Critical (http://www.adobe.com/devnet/security/security_zone/severity_ratings.html) vulnerabilities have been identified in Adobe Flash Player version 10.1.53.64 and earlier. These vulnerabilities could cause the application to crash and could potentially allow an attacker to take control of the affected system.
Adobe recommends users of Adobe Flash Player 10.1.53.64 and earlier versions update to Adobe Flash Player 10.1.82.76. Adobe recommends users of Adobe AIR 2.0.2.12610 and earlier versions update to Adobe AIR 2.0.3.


http://www.adobe.com/support/security/bulletins/apsb10-16.html

kaldor
August 11th, 2010, 06:56 PM
Good info, thanks for letting us know.

SoFl W
August 11th, 2010, 07:07 PM
Just checked my ubuntu updates and a flash update is under important security updates.
http://launchpad.net/ubuntu/+source/flashplugin-nonfree/10.1.82.76ubuntu0.10.04.2/+changelog

schtufbox
August 11th, 2010, 07:25 PM
Yep in the updates as of today.

drawkcab
August 11th, 2010, 07:46 PM
Warning! Adobe Flash is not HTML5! Warning!

lovinglinux
August 11th, 2010, 08:27 PM
They should publish a generic warning like "Flash critical vulnerability discovered. Affected versions: the one you are using, which was supposed to fix the last critical vulnerability".

Thanks for sharing.

fatality_uk
August 11th, 2010, 09:34 PM
They should publish a generic warning like "Flash critical vulnerability discovered. Affected versions: the one you are using, which was supposed to fix the last critical vulnerability".

Thanks for sharing.

Soooo true :)

dinamic1
September 14th, 2010, 08:06 PM
A critical (http://www.adobe.com/support/security/severity_ratings.html) vulnerability exists in Adobe Flash Player 10.1.82.76 and earlier versions for Windows, Macintosh, Linux, Solaris, and Adobe Flash Player 10.1.92.10 for Android. This vulnerability also affects Adobe Reader 9.3.4 for Windows, Macintosh and UNIX, and Adobe Acrobat 9.3.4 and earlier versions for Windows and Macintosh. This vulnerability (CVE-2010-2884) could cause a crash and potentially allow an attacker to take control of the affected system. There are reports that this vulnerability is being actively exploited in the wild against Adobe Flash Player on Windows. Adobe is not aware of any attacks exploiting this vulnerability against Adobe Reader or Acrobat to date.

Affected software versions



Adobe Flash Player 10.1.82.76 and earlier versions for Windows, Macintosh, Linux, Solaris, and Adobe Flash Player 10.1.92.10 for Android
Adobe Reader 9.3.4 and earlier versions for Windows, Macintosh and UNIX
Adobe Acrobat 9.3.4 and earlier versions for Windows and Macintoft

http://www.adobe.com/support/security/advisories/apsa10-03.html