Saturday, February 3, 2018







TECH






Adobe Flash Player Remote Code Execution
Disable Flash Player !! Critical Vulnerability Gives Away Your System Controls...If you're still among the netizens who use Flash Player, here is important news for you. In a security advisory published on Thursday, it's daddy. Adobe disclosed a critical remote code execution vulnerability that exists in Adobe Flash Player 28.0.0.137 and earlier versions.Adobe said that the vulnerability (CVE-2018-4878) is being exploited in the wild to deliver "limited, targeted attacks against Windows users," allowing the attacker to take control of the system. However, it also affects MacOS, ChromeOS, Linux users running the following software (v28.0.0.137 and below):

1-Adobe Flash Player Desktop Runtime (Windows, Macintosh)
2-Adobe Flash Player for Google Chrome (Windows, Macintosh, Linux, and Chrome OS)
3-Adobe Flash Player for Edge and IE 11 (Windows 10, 8.1)
4-Adobe Flash Player Runtime (Linux)

The attacks can be performed using web pages with flash content but also via email containing documents with embedded malicious flash content. Adobe has advised that Protected View for Office should be enabled which opens potentially dangerous Office files in read-only mode.Adobe is yet to issue a security patch that addresses flash player's remote code execution bug. The presence of Flash Player is already reducing on websites across the web and Adobe has previously announced its execution date. So, it will not cause any problems even if users uninstall Flash Player if they do not use it regularly.



Aditya Tiwari

No comments:

Post a Comment

  TECH Slackware-based PorteuX 1.7 portable Linux now available with a new kernel, smaller ISOs, updated desktops, and more Less than two mo...