Flash flaw could allow attackers to remotely control Macs and PCs, Adobe issues critical updateAdobe on Tuesday released a security update for their Flash Player to address a vulnerability that could allow an attacker to remotely take control of users' computers, an exploit that the company says has been documented in the wild.
According to Adobe, both Mac and Windows machines running Flash Player version 184.108.40.206 or earlier are susceptible to the attack. Linux users are not immune, as the bug also affects Flash Player versions 220.127.116.115 and earlier on the platform.
Users can verify the Flash version installed on their system by visiting Adobe's About Flash Player page or right-clicking on Flash content and choosing "About Adobe Flash Player" from the contextual menu.
Windows and Mac users are urged to update to Flash Player 18.104.22.168 as soon as possible, while Linux users should install version 22.214.171.1246. Flash Player plugins installed with Google's Chrome browser or Microsoft's Internet Explorer 10 or 11 will be automatically updated, Adobe says.
The bug — assigned CVE code CVE-2014-0497 — was reported by researchers Alexander Polyakov and Anton Ivanov of Kaspersky Labs.
On Topic: Mac OS X
- First look: Fantastical 2 for Mac brings advanced calendaring to OS X Yosemite
- Apple posts fifth OS X 10.10.3 beta, adds OS X Recovery updates
- Apple's Boot Camp drops support for Windows 7 with latest MacBook models
- Apple's Safari among browsers taken down at Pwn2Own day 2
- Apple issues iPhoto update in preparation of Photos, security fixes for OS X Yosemite