Adobe Flash Player Security Update
Adobe today released bulletin with details regarding two new vulnerabilities in Adobe Flash Player [1]. The vulnerabilities can lead to arbitrary code execution and affects all platforms (don't forget Android and Google Chrome patches!).
There is no indication at this point that the vulnerability has been exploited yet. However, I believe this is an unannounced out-of cycle release.
Also note that twitter is littered with links to various "adobe updates" with suspect destinations. Only download adobe updates using Adobe's own update tools or use the Adobe site itself.
Thanks all the readers who alerted us about this issue. It took a little bit long to publish this diary in part as I first needed to verify that the update is valid. The security bulletin below isn't link yet from Adobes bulletin overview page.
http://www.adobe.com/support/security/bulletins/apsb12-05.html
------
Johannes B. Ullrich, Ph.D.
SANS Technology Institute
Twitter
Application Security: Securing Web Apps, APIs, and Microservices | Washington | Dec 13th - Dec 18th 2024 |
Comments
Anonymous
Mar 5th 2012
1 decade ago
James
Mar 5th 2012
1 decade ago
MrSoapsud
Mar 6th 2012
1 decade ago
The single file for Flash Player 11.1.102.63 (174 MB) contains the released and debug versions for both 32 and 64 bit.
James
Mar 6th 2012
1 decade ago
- https://www.adobe.com/products/flashplayer/distribution3.html
.
PC.Tech
Mar 6th 2012
1 decade ago