Tuesday, February 04, 2014, 10:50 am PT (01:50 pm ET)
Flash flaw could allow attackers to remotely control Macs and PCs, Adobe issues critical updateAdobe on Tuesday released a security update for their Flash Player to address a vulnerability that could allow an attacker to remotely take control of users' computers, an exploit that the company says has been documented in the wild.
According to Adobe, both Mac and Windows machines running Flash Player version 220.127.116.11 or earlier are susceptible to the attack. Linux users are not immune, as the bug also affects Flash Player versions 18.104.22.1685 and earlier on the platform.
Users can verify the Flash version installed on their system by visiting Adobe's About Flash Player page or right-clicking on Flash content and choosing "About Adobe Flash Player" from the contextual menu.
Windows and Mac users are urged to update to Flash Player 22.214.171.124 as soon as possible, while Linux users should install version 126.96.36.1996. Flash Player plugins installed with Google's Chrome browser or Microsoft's Internet Explorer 10 or 11 will be automatically updated, Adobe says.
The bug — assigned CVE code CVE-2014-0497 — was reported by researchers Alexander Polyakov and Anton Ivanov of Kaspersky Labs.
On Topic: Mac OS X
- Apple to enable pixel-doubled 'Retina' mode for 4K monitors in OS X 10.9.3
- Apple issues first OS X 10.9.3 beta, asks developers to focus on graphics and audio
- Apple issues OS X Server 3.1 Preview beta with added supervised devices support
- Mac owners report OS X 10.9.2 update breaks AirPlay functionality
- Apple releases OS X 10.9.2 with fix for SSL security flaw, plus new FaceTime Audio