Adobe issues fix for yet another Flash flaw

“A well-known vulnerability in Adobe’s Flash player that could allow malicious users to steal browser data — including cookies — on Macs, PCs, and Linux machines has been exploited for the first time, prompting Adobe to issue a patch and urge users to upgrade their system as soon as possible,” Sam Oliver reports for AppleInsider.

“Adobe says that Flash Player version 14.0.0.125 and earlier for Mac and Windows and version 11.2.202.378 and earlier for Linux suffer from the bug, which was exploited in a proof-of-concept by Google engineer Michele Spagnuolo,” Oliver reports. “Mac and Windows users should update to version 14.0.0.145 while Linux users should update to version 11.2.202.394.”

Oliver reports, “In addition to the end-user mitigation, website owners can patch the vulnerability — assigned CVE identifier CVE-2014-4671 — on their end with one of a number of fixes identified by Spagnuolo.”

Read more in the full article here.

[Thanks to MacDailyNews Readers “Fred Mertz” and “Lynn Weiler” for the heads up.]

9 Comments

  1. Steve Jobs wisely insinuated that Flash was irrelevant. Another prediction of his yet becoming relevant today; a man like no other. May his blessed soul rest in peace.

Reader Feedback

This site uses Akismet to reduce spam. Learn how your comment data is processed.