Flash flaw could allow attackers to remotely control Macs and PCs, Adobe issues critical updateAdobe on Tuesday released a security update for their Flash Player to address a vulnerability that could allow an attacker to remotely take control of users' computers, an exploit that the company says has been documented in the wild.
According to Adobe, both Mac and Windows machines running Flash Player version 18.104.22.168 or earlier are susceptible to the attack. Linux users are not immune, as the bug also affects Flash Player versions 22.214.171.1245 and earlier on the platform.
Users can verify the Flash version installed on their system by visiting Adobe's About Flash Player page or right-clicking on Flash content and choosing "About Adobe Flash Player" from the contextual menu.
Windows and Mac users are urged to update to Flash Player 126.96.36.199 as soon as possible, while Linux users should install version 188.8.131.526. Flash Player plugins installed with Google's Chrome browser or Microsoft's Internet Explorer 10 or 11 will be automatically updated, Adobe says.
The bug — assigned CVE code CVE-2014-0497 — was reported by researchers Alexander Polyakov and Anton Ivanov of Kaspersky Labs.
On Topic: Mac OS X
- Apple's OS X 10.10.2 update fixes Wi-Fi connection issues, improves iCloud, patches security holes
- OS X 10.10.2 will fix years-old Thunderbolt hardware vulnerability
- Adobe acknowledges critical remote vulnerability in Flash, exploits already in the wild
- How to safely move your Mac's iPhoto library onto an external drive
- Google's Project Zero reveals three new zero-day exploits in Apple's OS X [u]