Monday, May 29, 2017

Adobe Patch Day: Updates for Flash, Acrobat, Adobe Reader & Co.

Adobe has updated its Patch Day, as usual, with Microsoft’s update Tuesday. Adobe provides the new version 11.5.502.146 of the Flash Player for Windows and Mac, as well as the versions 11.2.202.261 for Linux, 11.1.115.36 for Android 4.x and 11.1.111.31 for Android 3.x / 2.x. Adobe AIR 3.5.0.1060 for Windows, Mac and Android also includes the latest Flash Player.


As Adobe states in its Security Bulletin APBS13-01, the Flash developers have fixed a security vulnerability in the Flash Player. A buffer overflow can cause a crash that an attacker can use to inject code and take full control over the computer.


Adobe has fixed many more vulnerabilities in its PDF products. In Adobe Reader and in Acrobat, the developers have closed 27 security holes, which are mainly suitable for injecting and executing code. One of the gaps can be used to obtain additional privileges, two to bypass security.


For the current product line Adobe Reader XI and Acrobat XI, the vendor offers the new versions 11.0.1 for Windows and Mac. For Reader and Acrobat X, there are updates to the versions 10.1.5, for the version branch 9.x updates to Reader and Acrobat 9.5.3. For the updates to Adobe Reader and Acrobat 9.5.3 for Windows, Adobe assigns the highest priority level 1, the remaining updates are level 2. Adobe Reader X and XI are better protected by the implemented sandbox technology than code generation >


No comments:

Post a Comment