Adobe Security Bulletins

Discussion in 'other security issues & news' started by ronjor, Oct 23, 2012.

  1. act8192

    act8192 Registered Member

    Has anyone here allowed Flash to update automatically? Did it work?
     
  2. BoerenkoolMetWorst

    BoerenkoolMetWorst Registered Member

    I have it set to automatic update on my parents pc, the date of update is usually 1 day after release.
     
  3. Fly

    Fly Registered Member

    I can't find the original release that described the issues in more detail.

    It seemed to be more about bug fixes than security issues.

    Is the new '12' version larger in size ?

    I'm getting sick of updating Flash, the larger the file grows and the more features added, the more vulnerabilities.

    Software should be made in a way that does not require security updates.

    I just want to leave my systems alone ...
     
  4. BoerenkoolMetWorst

    BoerenkoolMetWorst Registered Member

    This is what I found in the link in my post #75:
    These updates resolve a vulnerability that could be used to bypass Flash Player security protections (CVE-2014-0491).

    These updates resolve an address leak vulnerability that could be used to defeat memory address layout randomization (CVE-2014-0492).


    Here is an article on what's new in v12:
    http://news.softpedia.com/news/Adobe-Flash-Player-12-Beta-Released-for-Download-400461.shtml
    Not sure what v11 was, but the v12 installers are about 16,5 to 17 MB.
    They have indeed grown quite a lot since the last year.
    Not very likely that is going to happen, everything built by mankind can be broken by mankind..
     
  5. act8192

    act8192 Registered Member

    v11 was roughly the same, 16.7 and 17.4.
     
  6. siljaline

    siljaline Registered Member

    Vulnerability identifier: APSB14-04
    http://helpx.adobe.com/security/products/flash-player/apsb14-04.html
     
  7. BoerenkoolMetWorst

    BoerenkoolMetWorst Registered Member

  8. lotuseclat79

    lotuseclat79 Registered Member

  9. wolfrun

    wolfrun Registered Member


    Thanks all for the heads up :thumb:
     
  10. ronjor

    ronjor Global Moderator

  11. siljaline

    siljaline Registered Member

    Security updates available for Adobe Flash Player | Vulnerability identifier: APSB14-07
    http://helpx.adobe.com/security/products/flash-player/apsb14-07.html
     
  12. harsha_mic

    harsha_mic Registered Member

    More information regarding this exploit at Fireeye.. It gives the detailed information regarding the sytems being exploited, how it can be mitigated at first place (ofcourse underlying problem would remain still)

    http://www.fireeye.com/blog/technic...omised-serving-up-flash-zero-day-exploit.html

    Once again, using latest versions of the software packages should reduce the chance of being exploited to a certain extent..
     
  13. MrBrian

    MrBrian Registered Member

    The ActiveX standalone .exe installer from the unmentionable URL is still at 12.0.0.44.

    Thanks siljaline :).
     
    Last edited: Feb 20, 2014
  14. BoerenkoolMetWorst

    BoerenkoolMetWorst Registered Member

    I just updated from there, it is now 12.0.0.70 :)
     
  15. siljaline

    siljaline Registered Member

    The unmentionable URL is now current as that's were I've been updating from of late & you're most welcome :)
     
  16. siljaline

    siljaline Registered Member

    Adobe releases emergency Flash update amid new zero-day drive-by attacks
    http://arstechnica.com/security/201...sh-update-amid-new-zero-day-drive-by-attacks/
     
  17. ronjor

    ronjor Global Moderator

  18. ronjor

    ronjor Global Moderator

  19. jwcca

    jwcca Registered Member

    I downloaded from the link and find that I now have:

    "shockwave for director 12.1.0.150"

    which is new,

    but I still have "shockwave 12.0.0.44"

    which I had before. Is this correct? I assumed that the new would replace the old.

    J


    Edit: OK, they were two different things, I only had Flash before, now I also have Director, do I "need" it? There doesn't seem to be any waay to delete it.
     
    Last edited: Mar 14, 2014
  20. ronjor

    ronjor Global Moderator

  21. ronjor

    ronjor Global Moderator

  22. siljaline

    siljaline Registered Member

  23. ronjor

    ronjor Global Moderator

    http://helpx.adobe.com/security/products/flash-player/apsb14-13.html
     
  24. anon

    anon Registered Member

  25. siljaline

    siljaline Registered Member

    Current Adobe Bulletin for May is:
    http://helpx.adobe.com/security/products/reader/apsb14-15.html
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice