Adobe patches critical vulnerabilities

 

Shockwave, Flash and Photoshop vulnerable to system hijacking, denial of service.

Adobe announced security updates for five products with four rated as a critical severity.

Shockwave Player, Flash Media Server, Flash Player and Photoshop CS5 all contained patches for  "critical severities", while an update rated "important" was released for RoboHelp.

The holes could allow attackers to run malicious code via Shockwave, cause a denial of service through Flash Media Server, trigger a crash and potential exploit using Flash Player, and hijack a system through a malicious .GIF file that targeted unpatched Photoshop CS5 installations.

Adobe said that the important vulnerability identified in RoboHelp 9 (versions 9.0.1.232 and earlier), RoboHelp 8, RoboHelp Server 9 and RoboHelp Server 8 could allow a specially crafted URL to create a cross-site scripting attack on RoboHelp installations.

This article originally appeared at scmagazineuk.com

Copyright © SC Magazine, US edition


Adobe patches critical vulnerabilities
Rykerstribe, CC2.0
 
 
 
 
 
Top Stories
CommBank suppliers compete for portable workloads
Multi-sourcing deals yield $100m savings.
 
Australia turns to homegrown drones
Debating the finer points of unmanned aerial vehicle design.
 
The New Zealand telco problem
Opinion: Could Telstra save Kiwi telcos?
 
Sign up to receive iTnews email bulletins
   FOLLOW US...

Latest VideosSee all videos »

Latest Comments
Polls
Should the Government enact new legislation to protect copyright holders in the digital age?

   |   View results
Yes
  20%
 
No
  80%
TOTAL VOTES: 539

Vote