PC Help And Information Easy Maintenance And Free Software
 
HomePortalFAQSearchRegisterLog in

Share | 
 

 Adobe Flash And Another Zero-Day Exploit

View previous topic View next topic Go down 
AuthorMessage
Steve™
Management

Management
avatar

Male
Number of posts : 2447
Home : At Home
Humor : If Im Not Back Later... Wait Longer
Registration date : 2007-07-30

PostSubject: Adobe Flash And Another Zero-Day Exploit   Wed Sep 15, 2010 1:29 am

Thanks to P2P Rules of WinMxWorld for this article
Quote :
Less than a week after warning users about a zero-day exploit in its PDF software, Adobe found another zero-day exploit in Flash. Adobe said hackers are already taking advantage of a critical flow in the current version of Flash to attack Windows PCs to “cause a crash and potentially allow an attacker to take control.”

Despite Adobe’s claims that the attacks are “limited” and “targeted” only at Windows users, the flaw is pretty far-reaching. All editions of Flash 9 and 10, including those for Windows, Mac, Linux, Solaris, and Google’s Android mobile operating system, and earlier versions, are affected. It’s also present in Adobe Reader and Acrobat, as well, since both programs include code to run Flash embedded in PDF documents. There are no reports of hackers exploiting the bug in PDF applications at this time, according to the company.

Technical details of the exploit were not disclosed, but a fix is already in the works. The company will release a patch for Flash in two weeks, or the week of Sept. 27; Acrobat and Reader will have to wait an extra week longer, or the week of Oct. 4, for a patch. Instead of waiting for the normal update on Oct. 12, these patches will be pushed out as an “out of band” security update.

Flash and Reader are Adobe’s two most prominent applications and frequently under attack by hackers. There have been three emergency patches for Reader over the past three months. The latest zero-day exploit reported earlier this month involved JavaScript. For users waiting for the patch, Microsoft announced Sept. 10 that Microsoft’s Enhanced Mitigation Experience Toolkit 2.0 offers some protection against ongoing attacks.

Flash was updated via another emergency patch in June to close a zero-day hole.

All this is just enough to make us wonder again if Steve Jobs is onto something with his adamant refusal to allow Flash on the iPhone and iPad.
Full Article Is Here

notes from me, Please keep your Adobe Flash Player up-to-date, as there is a 2nd patch/update for version 10 already



Back to top Go down
http://maxtech.youneed.us
 
Adobe Flash And Another Zero-Day Exploit
View previous topic View next topic Back to top 
Page 1 of 1
 Similar topics
-
» Any video/flash tutorials available for selenium?
» Flash components
» [H?i ?áp] Xin code flash hình ? topic
» Error 148:3 (Licensing for this product has stopped working) - Adobe Softwares
» Calling application's js file inside selenium

Permissions in this forum:You cannot reply to topics in this forum
MaxTech ::  General :: News & Information Centre-
Jump to: