Adobe updates Flash Player and AIR, fixes 35 bugs

Adobe updates Flash Player and AIR, fixes 35 bugs
Adobe updates Flash Player and AIR, fixes 35 bugs

Adobe released Flash Player and AIR updates on Tuesday that address 35 bugs, some of which could be exploited by an attacker to take control of a vulnerable system.

Windows and Macintosh users should update Flash Player to version 18.0.0.232, and those running Linux systems should update to 11.2.202.508, according to a Tuesday release. AIR Desktop Runtime, AIR SDK and AIR SDK & Compiler have been updated to 18.0.0.199 for all platforms.

Nearly every vulnerability addressed by Adobe could lead to code execution – that includes 15 use-after-free vulnerabilities, eight memory corruption vulnerabilities, five type confusion vulnerabilities, and five buffer overflow and heap buffer overflow bugs, as well as an integer overflow flaw.  

According to the release, “These updates include further hardening to a mitigation introduced in version 18.0.0.209 to defend against vector length corruptions (CVE-2015-5125).”

You must be a registered member of SC Magazine to post a comment.

Sign up to our newsletters

TOP COMMENTS