Macromedia (flash) patches 'critical' security bug







Share:
Sponsors:
Security researchers have discovered a vulnerability in Macromedia's Flash Player that creates a mechanism for hackers to attack the PCs of users running the popular application. The security bug - described as critical - affect Macromedia Flash Player 6.x and 7.x. Macromedia has issued security updates.
The flaw stems from a failure to reject malformed SWF files as invalid. This bug might be exploited by using specially crafted (malformed) SWF file to execute arbitrary code on the machines of users induced into visiting sites under the control of hackers.
Flash Player version 7.0.19.0 and prior on the Windows platform, and in versions prior to 7.0.25.0 on Unix, are reportedly vulnerable. Users are advised to upgrade to Flash Player 8 (8.0.22.0) or apply a Flash Player 7 update (7.0.61.0 or 7.0.60.0) in order to guard against possible attack. An advisory from Macromedia explaining the security glitch can be foundHERE
Article submitted by: Webshark
Last Update: 11-08-2005
Category: Off Topic Info
The flaw stems from a failure to reject malformed SWF files as invalid. This bug might be exploited by using specially crafted (malformed) SWF file to execute arbitrary code on the machines of users induced into visiting sites under the control of hackers.
Flash Player version 7.0.19.0 and prior on the Windows platform, and in versions prior to 7.0.25.0 on Unix, are reportedly vulnerable. Users are advised to upgrade to Flash Player 8 (8.0.22.0) or apply a Flash Player 7 update (7.0.61.0 or 7.0.60.0) in order to guard against possible attack. An advisory from Macromedia explaining the security glitch can be foundHERE
Article submitted by: Webshark
Last Update: 11-08-2005
Category: Off Topic Info
Current rating: 5.5 by 30 users
Would you recommend this article to a friend? |
Not a Chance | 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | Absolutely |
Related News Stories
(15,272 reads) 03-29-2007
· Adobe Photoshop CS3 published(13,314 reads) 08-03-2006
· FBI calls for hacker help.(15,095 reads) 07-20-2006
· Become a Friend of Firefox.(12,860 reads) 07-15-2006
· Recently unearthed e-mail reveals what life was like in 1995(14,695 reads) 02-23-2006
· Inside Windows Vista ( Build 5308) + slide show(13,395 reads) 02-21-2006
· do-you-have-a.COM ? thinking-to-buy-a.COM ?(13,560 reads) 01-17-2006
· Websites judged in milliseconds(14,170 reads) 01-17-2006
· Stolen Corvette found after 37 years (Reuters)(13,760 reads) 01-17-2006
· Two patients in surgical slip-up (Reuters)(13,151 reads) 01-17-2006
· Goose Poop a Problem for Oakland Parkgoers (AP)
Please register or sign-in to post comments.