Adobe has issued an emergency fix for Flash to prevent two ongoing malware attacks against the world's most popular Web plug-in.
In an advisory note, Adobe announced the latest release of Flash Player 11.5, which will patch two security zero-day vulnerabilities that are actively being used by hackers and malware writers to spread malware.
While Flash users of Windows and OS X are understood to be focus of the attacks, the release of the unscheduled security fix is also available for Linux users and Android devices.
According to Adobe, the OS X exploit targets Safari and Firefox users and delivers malware via malicious Flash content hosted on Web sites. A separate flaw could dupe Windows users into opening Microsoft Word documents as email attachments that contain malicious Flash content.
Users are being warned to update their software as soon as possible, by going to Adobe's Web site, or using the in-built updater in the Windows Control Panel or OS X's System Preferences.
Thursday's security update brings the following Flash versions up to date:
- Adobe Flash Player 11.5.502.146 and earlier versions for Windows and OS X;
- Adobe Flash Player 11.2.202.261 and earlier versions for Linux;
- Adobe Flash Player 11.1.115.36 and earlier versions for Android 4.x;
- Adobe Flash Player 11.1.111.31 and earlier versions for Android 3.x and 2.x.
0 σχόλια:
Post a Comment