› Forums › General › General Discussion › Windows Security › 0-day vulnerability in Adobe Flash Player used by malware !
- This topic has 0 replies, 1 voice, and was last updated 9 years, 3 months ago by hackerman1.
- AuthorPosts
-
- 24th January 2015 at 11:01 #44907
“Adobe Security Bulletin
Security Advisory for Adobe Flash Player
Release date: January 22, 2015
Vulnerability identifier: APSA15-01
CVE number: CVE-2015-0311
Platform: All PlatformsSummary
A critical vulnerability (CVE-2015-0311) exists in Adobe Flash Player 16.0.0.287 and earlier versions for Windows,
Macintosh and Linux.
Successful exploitation could cause a crash and potentially allow an attacker to take control of the affected system.
We are aware of reports that this vulnerability is being actively exploited in the wild via drive-by-download attacks,
against systems running Internet Explorer and Firefox on Windows 8 and below.Adobe expects to have a patch available for CVE-2015-0311 during the week of January 26.
Affected software version
Adobe Flash Player 16.0.0.287 and earlier versions for Windows and Macintosh
Adobe Flash Player 13.0.0.262 and earlier 13.x versions
Adobe Flash Player 11.2.202.438 and earlier versions for LinuxTo verify the version of Adobe Flash Player installed on your system, access the About Flash Player page,
or right-click on content running in Flash Player and select “About Adobe (or Macromedia) Flash Player” from the menu.
If you use multiple browsers, perform the check for each browser you have installed on your system.Severity ratings
Adobe categorizes this as a critical vulnerability.
“More info about the vulnerability from Kafeine who detected it: http://malware.dontneedcoffee.com/2015/01/unpatched-vulnerability-0day-in-flash.html
Be careful if you need to view videos or if you allow javasript to run in your browser.
Remember, ads can be dangerous…..Noscript for Pale Moon / Firefox is always recommended: https://noscript.net/
And running the browser in a sandbox is also a good idea: http://www.sandboxie.com/
- AuthorPosts
- You must be logged in to reply to this topic.