Adobe releases second Flash patch in a week

By

Critical fix covers six vulnerabilities.

Adobe has released its second critical patch in a week for Flash to cover six vulnerabilities.

Adobe releases second Flash patch in a week

Updates are available for the Windows, Mac, Linux and Android platforms.

Adobe has also released patches for three flaws in the Air product. Windows and Mac users will need to update to v. 11.4.402.265, while the Flash Player installed with Google Chrome should automatically be updated to the latest Chrome version, which will include Adobe Flash Player v. 11.3.31.230 for Windows and Linux and Flash Player v. 11.4.402.265 for Mac.

Windows and Mac users will be able to update to Adobe Air 3.4.0.2540.

Wolfgang Kandek, CTO of Qualys, said that five of the flaws are categorised as ‘critical' and can lead to remote code execution on the attacked machine.

“We recommend installing the update as quickly as possible, at least on the Windows platform where it carries the highest priority rating of ‘one', with an associated recommended patch turnaround time of 72 hours,” he said.

“Overall the release will be a bit of a surprise for IT administrators, as we had a Flash Player release last week during the normal Patch Tuesday, together with the new versions of Acrobat/Reader and Shockwave Player. We believe that last week's release was an out-of-band emergency fix to address a specific vulnerability under abuse in the wild and that could not be integrated with this bigger release.”

This article originally appeared at scmagazineuk.com

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, UK edition
Tags:

Most Read Articles

India's alarm over Chinese spying rocks CCTV makers

India's alarm over Chinese spying rocks CCTV makers

Woolworths' CSO is Optus-bound

Woolworths' CSO is Optus-bound

Hackers abuse modified Salesforce app to steal data, extort companies

Hackers abuse modified Salesforce app to steal data, extort companies

Cyber companies hope to untangle weird hacker codenames

Cyber companies hope to untangle weird hacker codenames

Log In

  |  Forgot your password?