Attackers exploiting new Flash bug, Adobe warns

Discussion in 'other security issues & news' started by ronjor, Jun 5, 2010.

Thread Status:
Not open for further replies.
  1. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    163,838
    Location:
    Texas
    Story
     
  2. Cudni

    Cudni Global Moderator

    Joined:
    May 24, 2009
    Posts:
    6,963
    Location:
    Somethingshire
    Thanks. And from Adobe advisory: The Flash Player 10.1 Release Candidate is seemingly not vulnerable + Deleting, renaming, or removing access to the authplay.dll should also help until patch is issued for Adobe Acrobat
     
  3. elapsed

    elapsed Registered Member

    Joined:
    Apr 5, 2004
    Posts:
    7,076
    Yup. You can update to Adobe Flash 10.1 RC7 which is unaffected by this new exploit, described here.

     
  4. Page42

    Page42 Registered Member

    Joined:
    Jun 18, 2007
    Posts:
    6,941
    Location:
    USA
    Thanks a million, fellas, for the heads up and the links.
    V10.1.53.64 is now safely installed. :thumb:
     
  5. Ocky

    Ocky Registered Member

    Joined:
    May 6, 2006
    Posts:
    2,713
    Location:
    George, S.Africa
    Last edited: Jun 8, 2010
  6. Oh yay... The sooner flash dies, the better IMO. Thank the gods for Noscript... :rolleyes:
     
  7. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    163,838
    Location:
    Texas
    The H Security
     
  8. siljaline

    siljaline Registered Member

    Joined:
    Jun 29, 2003
    Posts:
    6,618
    Adobe did not deliver as promised per this revised advisory As cited already in this thread the release candidate software is a temporary patch until Adobe releases a final fix :ouch:

    Workarounds such as renaming dll files are not recommended.
     
  9. Zenwalk Linux has at least updated Flash to 10.1 RC7... But I think I'll still be using Noscript, thank you.:ouch:
     
  10. prius04

    prius04 Registered Member

    Joined:
    Apr 14, 2007
    Posts:
    1,248
    Location:
    USA
    New Flash version appears to be up now:

    http://get.adobe.com/flashplayer/?promoid=BUIGP


    EDIT: Well, it looks like they just made RC7 "final", at least for the purposes of the Firefox plug-in (file version is the same).

    EDIT 2: If you're using Firefox, you'll find Adobe's lousy, stinking (IMHO) DLM (getPlusPlus or whatever) in BOTH the Extensions and Plugins sections under "Add-ons". The extension has an uninstall button from within Firefox but the Plugin does not. Easily uninstalled from the entry in CP, though. FWIW.....
     
    Last edited: Jun 10, 2010
  11. katio

    katio Guest

    There's a standalone installer hidden here ;)
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.