
Windows and Mac users should update to Adobe Flash Player 17.0.0.188 to patch these known vulnerabilities.
These updates resolve a security bypass vulnerability that could lead to information disclosure ( CVE-2015-3079), and provide additional hardening to protect against CVE-2015-3044. These updates resolve memory leak vulnerabilities that could be used to bypass ASLR ( CVE-2015-3091, CVE-2015-3092). These updates resolve a use-after-free vulnerability that could lead to code execution ( CVE-2015-3080). These updates resolve an integer overflow vulnerability that could lead to code execution ( CVE-2015-3087). These updates resolve validation bypass issues that could be exploited to write arbitrary data to the file system under user permissions ( CVE-2015-3082, CVE-2015-3083, CVE-2015-3085). These updates resolve a time-of-check time-of-use (TOCTOU) race condition that could be exploited to bypass Protected Mode in Internet Explorer ( CVE-2015-3081).
These updates resolve a heap overflow vulnerability that could lead to code execution ( CVE-2015-3088). You can also take look at our helpful guide to ensure you’re as safe as possible when updating Adobe Flash.Īdobe’s security bulletin describes the vulnerabilities patched in these updates as follows: Adobe released version 11.2.202.460 for Linux users.Īdobe said is is not aware of any exploits in the wild or of any attacks against any of the vulnerabilities it patches with these software updates.Īffected software versions, which are now out of date and vulnerable, include: Adobe Flash Player 17.0.0.169 and earlier versions, Adobe Flash Player 13.0.0.281 and earlier 13.x versions, Adobe Flash Player 11.2.202.457 and earlier 11.x versions, and Adobe’s AIR 17.0.0.144 and earlier versions.Īre you unsure if your browser has Flash installed or what version you’re running? You can head over to Adobe’s official site here, and it’ll tell you the version information you’re running.
The software update is available for Windows, OS X, and Linux. Security News Adobe Flash Player 17.0.0.188 Released with Security Bug FixesĪdobe Systems has released Flash Player 17.0.0.188 for Mac and Windows users, which addresses 18 security bugs in the software.