Adobe plugs holes in Flash Player and ColdFusion

By
Follow google news

Four vulnerabilities plugged.

On Tuesday, Adobe patched four vulnerabilities affecting its popular Flash Player software and ColdFusion web application server.


Security updates for Flash Player addressed two critical vulnerabilities that could cause the software to crash and potentially allow a saboteur to take control of an exploited system, Adobe revealed in a bulletin.

In addition, a “hotfix” rectifying two flaws in ColdFusion was released, plugging a cross-site scripting (XSS) vulnerability that could be exploited by a remote authenticated attacker, and another bug that could give an unauthorized user remote read access.

The ColdFusion update impacts versions 9 and newer running on Windows, Macintosh and Linux. Adobe Flash Player 11.9.900.117 and earlier versions for Windows and Macintosh received updates, as well as Adobe Flash Player 11.2.202.310 and earlier versions for Linux.

This article originally appeared at scmagazineus.com

Add iTnews as your trusted source

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:

Most Read Articles

ASD warns of Australian attacks on N-able N-central RMM

ASD warns of Australian attacks on N-able N-central RMM

NDIA fended off March TeamPCP supply-chain hackers

NDIA fended off March TeamPCP supply-chain hackers

How a Texas student blew the whistle on a rogue AI hacking attempt

How a Texas student blew the whistle on a rogue AI hacking attempt

Researchers chain Tesla charger bug into a four-vendor EV worm

Researchers chain Tesla charger bug into a four-vendor EV worm

Log In

  |  Forgot your password?