Adobe released a critical patch for Flash Player addressing an object confusion vulnerability (CVE-2012-0779). If exploited, it could cause the application crash and potentially allow an attacker to take control of the system. The security bulletin is posted here and the update can be downloaded here. Affected Software - Windows, Macintosh and Linux version 11.2.202.233 and earlier [1] http://www.adobe.com/support/security/bulletins/apsb12-09.html ----------- Guy Bruneau IPSS Inc. gbruneau at isc dot sans dot edu |
Guy 522 Posts ISC Handler May 4th 2012 |
Thread locked Subscribe |
May 4th 2012 1 decade ago |
Anyone know if version 10.3.183.19 is vulnerable? the CVE is not clear as it states "Adobe Flash Player before 10.3.183.19 and 11.x before 11.2.202.235 on Windows" and Adobe does not even mention 10.x
|
Anonymous |
Quote |
May 7th 2012 1 decade ago |
Dave,
According to the security bulletin, it states "For users who cannot update to Flash Player 11.2.202.235, Adobe has developed a patched version of Flash Player 10.x, Flash Player 10.3.183.19, which can be downloaded here." Here is helpx.adobe.com/flash-player/kb/… |
Guy 522 Posts ISC Handler |
Quote |
May 7th 2012 1 decade ago |
Sign Up for Free or Log In to start participating in the conversation!