Attackers exploiting new Flash bug, Adobe warns

Discussion in 'other security issues & news' started by ronjor, Jun 5, 2010.

Thread Status:
Not open for further replies.
  1. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    57,719
    Location:
    Texas
    Story
     
  2. Cudni

    Cudni Global Moderator

    Joined:
    May 24, 2009
    Posts:
    6,956
    Location:
    Somethingshire
    Thanks. And from Adobe advisory: The Flash Player 10.1 Release Candidate is seemingly not vulnerable + Deleting, renaming, or removing access to the authplay.dll should also help until patch is issued for Adobe Acrobat
     
  3. funkydude

    funkydude Registered Member

    Joined:
    Apr 5, 2004
    Posts:
    6,851
    Yup. You can update to Adobe Flash 10.1 RC7 which is unaffected by this new exploit, described here.

     
  4. Page42

    Page42 Registered Member

    Joined:
    Jun 18, 2007
    Posts:
    5,828
    Location:
    Last Breath Farm
    Thanks a million, fellas, for the heads up and the links.
    V10.1.53.64 is now safely installed. :thumb:
     
  5. Ocky

    Ocky Registered Member

    Joined:
    May 6, 2006
    Posts:
    2,677
    Location:
    George, S.Africa
    Last edited: Jun 8, 2010
  6. Oh yay... The sooner flash dies, the better IMO. Thank the gods for Noscript... :rolleyes:
     
  7. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    57,719
    Location:
    Texas
    The H Security
     
  8. siljaline

    siljaline Former Poster

    Joined:
    Jun 29, 2003
    Posts:
    6,619
    Adobe did not deliver as promised per this revised advisory As cited already in this thread the release candidate software is a temporary patch until Adobe releases a final fix :ouch:

    Workarounds such as renaming dll files are not recommended.
     
  9. Zenwalk Linux has at least updated Flash to 10.1 RC7... But I think I'll still be using Noscript, thank you.:ouch:
     
  10. prius04

    prius04 Registered Member

    Joined:
    Apr 14, 2007
    Posts:
    1,238
    Location:
    USA
    New Flash version appears to be up now:

    http://get.adobe.com/flashplayer/?promoid=BUIGP


    EDIT: Well, it looks like they just made RC7 "final", at least for the purposes of the Firefox plug-in (file version is the same).

    EDIT 2: If you're using Firefox, you'll find Adobe's lousy, stinking (IMHO) DLM (getPlusPlus or whatever) in BOTH the Extensions and Plugins sections under "Add-ons". The extension has an uninstall button from within Firefox but the Plugin does not. Easily uninstalled from the entry in CP, though. FWIW.....
     
    Last edited: Jun 10, 2010
  11. katio

    katio Guest

    There's a standalone installer hidden here ;)
     
Loading...
Thread Status:
Not open for further replies.