Results 1 to 5 of 5
Like Tree2Likes
  • 1 Post By Bearcat
  • 1 Post By INDRANIL

Thread: Security Advisory for Adobe Flash Player, Adobe Reader and Acrobat

  1. #1
    Moderator
    Overall activity: 73.0%

    Join Date
    Dec 2008
    Location
    Italy
    Posts
    6,895
    Liked
    1067 times
    Points
    71,755

    Security Advisory for Adobe Flash Player, Adobe Reader and Acrobat

    Security Advisory for Adobe Flash Player, Adobe Reader and Acrobat

    Release date: April 11, 2011

    Vulnerability identifier:APSA11-02


    A critical vulnerability exists in Flash Player 10.2.153.1 and earlier versions (Adobe Flash Player 10.2.154.25 and earlier for Chrome users) for Windows, Macintosh, Linux and Solaris, Adobe Flash Player 10.2.156.12 and earlier versions for Android, and the Authplay.dll component that ships with Adobe Reader and Acrobat X (10.0.2) and earlier 10.x and 9.x versions for Windows and Macintosh operating systems.

    This vulnerability (CVE-2011-0611) could cause a crash and potentially allow an attacker to take control of the affected system. There are reports that this vulnerability is being exploited in the wild in targeted attacks via a Flash (.swf) file embedded in a Microsoft Word (.doc) file delivered as an email attachment, targeting the Windows platform. At this time, Adobe is not aware of any attacks via PDF targeting Adobe Reader and Acrobat. Adobe Reader X Protected Mode mitigations would prevent an exploit of this kind from executing.

    We are in the process of finalizing a schedule for delivering updates for Flash Player 10.2.x and earlier versions for Windows, Macintosh, Linux, Solaris and Android, Adobe Acrobat X (10.0.2) and earlier 10.x and 9.x versions for Windows and Macintosh, Adobe Reader X (10.0.2) for Macintosh, and Adobe Reader 9.4.3 and earlier 9.x versions for Windows and Macintosh. Because Adobe Reader X Protected Mode would prevent an exploit of this kind from executing, we are currently planning to address this issue in Adobe Reader X for Windows with the next quarterly security update for Adobe Reader, currently scheduled for June 14, 2011.
    Source

    my advice: disable Flash Player, do not open any attachment, replace Adober Reader with something less vulnerable (ie Sumatra PDF freeware)
    Roger and out

  2. #2
    I'd rather be fishing!
    Overall activity: 0%

    Join Date
    Jan 2011
    Location
    Minnesota, USA
    Posts
    3,155
    Liked
    1543 times
    Points
    4,220
    Thanks for the update Leo and the advice!
    Life isn't about waiting for the storm to pass, it's about learning to dance in the rain!

  3. #3
    The Specialist *
    Overall activity: 76.0%

    Join Date
    May 2010
    Location
    KOLKATA
    Posts
    5,162
    Liked
    731 times
    Points
    47,580
    Thank you Leo for the info .

    my advice: disable Flash Player, do not open any attachment, replace Adober Reader with something less vulnerable (ie Sumatra PDF freeware)
    Aye Aye Captain !!! .
    I don't need to know everything, I just need to know where to find it, when I need it.

  4. #4
    Moderator
    Overall activity: 73.0%

    Join Date
    Dec 2008
    Location
    Italy
    Posts
    6,895
    Liked
    1067 times
    Points
    71,755
    http://flashblock.mozdev.org/

    FlashBlock for FF and I think for Chrome as well could mitigate the issue

  5. #5
    The Specialist *
    Overall activity: 76.0%

    Join Date
    May 2010
    Location
    KOLKATA
    Posts
    5,162
    Liked
    731 times
    Points
    47,580
    I'm using as my addon on both FF & Chrome . Hurray .

 

 

Similar Threads

  1. Replies: 6
    Last Post: 02-07-2011, 05:29 AM
  2. Replies: 3
    Last Post: 11-15-2010, 02:30 AM
  3. Replies: 9
    Last Post: 11-04-2010, 09:55 PM
  4. Security Advisory for Flash Player, Adobe Reader and Acrobat
    By leofelix in forum Security Bulletin
    Replies: 4
    Last Post: 06-08-2010, 08:04 PM
  5. Security Advisory for Adobe Reader and Acrobat
    By leofelix in forum Spyware/Viruses
    Replies: 6
    Last Post: 04-16-2010, 07:00 AM
All times are GMT +8. The time now is 06:18 AM.