Home » News » Computer Security » Flash bug removed; Adobe released 7 patches

Flash bug removed; Adobe released 7 patches

By Gina on February 17, 2012 | Computer Security, Flash Player bug, vulnerabilities, patches, Flash Player plug-in XSS hole, cross-site scripting vulnerability, XXS bug, Adobe security bulletin Flash bug removed; Adobe released 7 patches

Adobe patched 7 flaws in Flash Player and the one that Google reported hackers are using in "active targeted attacks". The Flash Player plug-in XSS hole was attacked by hackers and works only against Internet Explorer.

According to Adobe security bulletin: "This update resolves a universal cross-site scripting vulnerability that could be used to take actions on a user's behalf on any website or web mail provider, if the user visits a malicious website. There are reports that this vulnerability is being exploited in the wild in active targeted attacks designed to trick the user into clicking on a malicious link delivered in an email message." 

Adobe also explained other 6 vulnerabilities that also were related to XXS bug. They were memory corruption vulnerabilities or security bypass bugs as well. 

Adobe updated Flash Player 11 and Flash Player 10 on Windows, Mac OS X, Linux and Solaris, and Flash Player on Android in order to fix those vulnerabilities. Moreover, Google was credited for telling Adobe about the XSS hole.

All patched versions of Flash Player for Windows, Mac, Linux and Solaris can be downloaded from Adobe's website. Flash users may update tool or wait till software will notify that a new version is available and can be updated.

More Computer Security news

39 flaws are fixed by Apple

39 flaws are fixed by Apple

Apple released OS X Lion 10.7.4 in order to fix 35 security holes as well as 4 vulnerabilities in the Safari web browser. The problem with Time Machine in OS X Lion is fixed with the new update. These flaws could enable a remote attacker to access a user's backup credentials. An issue is solved with Directory Service which could allow exposing sensitive data by the attacker. Read more.


News categories

Latest news

Related news