Flash flaw could allow attackers to remotely control Macs and PCs, Adobe issues critical updateAdobe on Tuesday released a security update for their Flash Player to address a vulnerability that could allow an attacker to remotely take control of users' computers, an exploit that the company says has been documented in the wild.
According to Adobe, both Mac and Windows machines running Flash Player version 18.104.22.168 or earlier are susceptible to the attack. Linux users are not immune, as the bug also affects Flash Player versions 22.214.171.1245 and earlier on the platform.
Users can verify the Flash version installed on their system by visiting Adobe's About Flash Player page or right-clicking on Flash content and choosing "About Adobe Flash Player" from the contextual menu.
Windows and Mac users are urged to update to Flash Player 126.96.36.199 as soon as possible, while Linux users should install version 188.8.131.526. Flash Player plugins installed with Google's Chrome browser or Microsoft's Internet Explorer 10 or 11 will be automatically updated, Adobe says.
The bug — assigned CVE code CVE-2014-0497 — was reported by researchers Alexander Polyakov and Anton Ivanov of Kaspersky Labs.
On Topic: Mac OS X
- New iOS 8.4 will enable Apple Music, Beats 1 on Tuesday; Sonos, Android support coming later this year
- Adobe addresses new 'actively exploited' critical vulnerability in Flash, users urged to update
- Apple issues second beta of OS X 10.11 El Capitan to developers
- Apple addresses XARA vulnerabilities, says fixes on the way
- Serious iOS, OS X flaws lead to password theft in wide ranging security study