New Flash flaw could let attackers control Macs, Adobe urges users to update

28. April 2014 Security 2

Adobe on Monday disclosed a new vulnerability in its Flash platform that may allow attackers to remotely take over and control Macs, PCs, and Linux machines and advised users to update their system as quickly as possible.

The bug affects Flash Player and earlier on the Mac, Flash Player and earlier on Windows, and Flash Player and earlier on Linux. Adobe says that attacks exploiting this flaw have been discovered “in the wild,” so users are strongly urged to apply the latest updates sooner than later.

Mac owners and those on Windows-based PCs should update to Flash Player, while users running Linux should update to Flash Player Those using the versions of Flash installed alongside Google’s Chrome browser or Microsoft’s Internet Explorer 10 and 11 will receive updates automatically.

According to security firm Kaspersky Lab, the vulnerability — which received CVE number 2014-0515 — is “located in the Pixel Bender component, designed for video and image processing.” Exploits seen in the field using this bug are somewhat unique, using slightly different code depending on the operating system being targeted.

This is the second remote execution bug to crop up in Flash this year. A similar flaw surfaced in February, also affecting all platforms.

Users can check the version of Flash installed on their system by visiting Adobe’s About Flash Player page or right-clicking on Flash content in their browser and choosing “About Adobe (or Macromedia) Flash Player” from the contextual menu.

This article is mirrorred from AppleInsider, the original can be found here.

2 thoughts on “New Flash flaw could let attackers control Macs, Adobe urges users to update”

  • 1
    blasev on April 28, 2014 Reply

    makes me wonder why most people still use flash.

    • 2
      jem on April 29, 2014 Reply

      I really wish I can uninstall Flash permanently because of those type of security risks, but unfortunately i can’t get rid of it. As i can’t play any media sites like YouTube without flash installed into my machine.

Leave a Reply

Your email address will not be published. Required fields are marked *


This site uses Akismet to reduce spam. Learn how your comment data is processed.