Adobe Flash zero day: Available now, weekly updates

Adobe released an announcement (APSA18-01) for Adobe Flash Player which confirms a critical security patch (original…) present in Player version 28.0.0.137 but also in previous versions.Adobe Flash

Flash Player 28.0.0.137 is the latest version of the application, which means that all installed versions of Flash are affected by the vulnerability.

The affected :

Adobe Flash Player Runtime in Windows, Linux and Mac.
Adobe Flash Player for Google Chrome on Windows, Mac, Linux, and Chrome OS platforms.
Adobe Flash Player for Microsoft Edge and Internet Explorer 11 on Windows 8.1 and 10.

Adobe plans to release an update for Flash Player next week, which is supposed to cover the security gaps.

The company has confirmed that vulnerability can be exploited in Windows with Office documents that have built-in malicious Flash content. Of course these documents are distributed by email.

Adobe reports that vulnerability CVE-2018-4878, is already used in limited and targeted attacks against Windows users.

Adobe also states that anyone who wants to be protected should use Protected View to open any read-only Office documents. This is done from the path File - Options and activate the Protected View options under Trust - Trust Center Settings - Protected View.

Everyone who uses flash, it's a good idea to turn it off from your browser, because the attacks you've seen can come through Office documents, but that does not mean they will not turn into attacks that can be done through the web .

Patience, where will it go? Universal disabling of Adobe Flash from all web applications is just coming πως

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by giorgos

George still wonders what he's doing here ...

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).