The People v. O. J. Simpson Will Be with Us Forever

Sign Up & Win

CBS Orders A True Crime Anthology Looking At The Death Of JonBenét Ramsey

My Chemical Romance’s Gerard Way Is Launching A DC Comics Imprint

Adobe Patches Actively Exploited Zero-Day Flaws in Flash Player

Technology 8 April 2016


On Tuesday, Adobe released a security advisory warning of a critical vulnerability (CVE-2) in Flash that is being exploited in the wild. The advisory claimed that the flaw exists in Flash Player 21.0.0.197 and earlier versions for Windows 7, XP, Mac, Linux and Chrome OS. Adobe updated the advisory later on to admit that Windows 10 is also among the operating systems being exploited by this zero-day flaw.

Adobe is aware of reports that CVE-2 is being actively exploited on systems running Windows 10 and earlier with Flash Player version 20.0.0.306 and earlier. A mitigation introduced in Flash Player 21.0.0.182 currently prevents exploitation of this vulnerability, protecting users running Flash Player 21.0.0.182 and later.

The vulnerability is a memory corruption flaw that can be exploited for remote code execution. The company has now released a Flash Player update to patch this zero-day vulnerability that has been leveraged by criminal hackers to deliver malware and ransomware on Windows 10 and earlier operating system versions. Proofpoint (one of the research firms responsible for detection of this previously unknown vulnerability) reported that the exploit has been used by hackers to deliver various threats, including Cerber and Locky ransomware, using the Magnitude exploit kit.

READ  Forza Motorsport 6 coming to the PC, leak points to a free-to-play version

adobe flash player zero day exploit

FireEye, another firm acknowledged by Adobe for detection of this flaw, said that some of the layout and functionality of this exploit is similar to exploits leaked in the Hacking Team data breach.

Adobe’s Flash Player has already received three security updates this year, including an emergency patch that was released last month to patch 23 vulnerabilities, including an active vulnerability that allowed attackers to take control of the affected systems. February’s patch had fixed 22 memory corruption flaws that could have been exploited for arbitrary code execution. Adobe has itself recommended developers to ditch Flash in favor of HTML5, but it seems unlikely that this bug-magnet will die anytime soon.

READ  The Missing Link of Artificial Intelligence

Users are advised to visit Adobe to install the updated versions of Flash Player on their Windows, OS X, Linux, and Chrome OS systems.

– Flash Player Survived 2015 with Over 300 Bug Fixes; 2016 to Finally Kill It?

Source

http://feedproxy.google.com/~r/Wccftechcom/~3/EC9DWmmwoTY/
 
 
For all other news on the Technology

Benzer İçerikler

North America And Europe Get Superdimension Neptune VS Sega Hard Girls This Fall

Keep A Party Of Crummy Adventurers Alive In RPG Healer’s Quest

Yorumlar

Henüz hiç yorum yapılmamış.

Sorry, comments for this entry are closed at this time.

Bunlar da var!
Glen Campbell Enters Stage 7 of Alzheimer’s, His Wife Reports

Glen Campbell Enters Stage 7 of Alzheimer’s, His Wife Reports

9 March 2016
Meow! Will Cheryl’s new job be a snub to Simon Cowell?

Meow! Will Cheryl’s new job be a snub to Simon Cowell?

6 April 2016
Problematic: When Critics Impose Their Own Cultural Biases On Theatre

Problematic: When Critics Impose Their Own Cultural Biases On Theatre

17 March 2016
Schuylkill County Doctor Sentenced to Prison

Schuylkill County Doctor Sentenced to Prison

11 March 2016
Stassi Schroeder News: 'Vanderpump Rules' Star 'Obsessed' With Cast? [VIDEO]

Stassi Schroeder News: 'Vanderpump Rules' Star 'Obsessed' With Cast? [VIDEO]

26 February 2016
Almost all U.S. presidents have been Christians

Almost all U.S. presidents have been Christians

12 February 2016
Fundraiser for Murder Victim

Fundraiser for Murder Victim

8 March 2016
10 Actors Who Almost Went Crazy in Their Roles

10 Actors Who Almost Went Crazy in Their Roles

12 March 2016
Microsoft Envision Puts Spotlight On Digital Transformation

Microsoft Envision Puts Spotlight On Digital Transformation

4 April 2016
Star Wars set to return to the hills of Kerry this summer – reports

Star Wars set to return to the hills of Kerry this summer – reports

3 March 2016
Watch Lil Wayne’s Galaxy S7 Commercials With Wesley Snipes

Watch Lil Wayne’s Galaxy S7 Commercials With Wesley Snipes

13 March 2016