Please fill in the field below to receive your profile link.
ADVERTISEMENT
Adobe fixes Flash and Photoshop flaws
Publicly available exploit code leaves millions at risk
Shaun Nichols in California, vnunet.com12 Jul 2007
ADVERTISEMENT
Adobe has
released updates that patch security holes in two of the company's most popular
products.
The patches fix three vulnerabilities in the free Flash player plug-in and
two in Photoshop. Publicly available exploit code for the flaws has been found
on the web.
The two Photoshop vulnerabilities were first disclosed in late April by a
security researcher known as 'Marsu'.
The disclosures include code for exploits which could allow an attacker to
successfully execute malicious code on a target system via a specially crafted
'bmp', 'dib' or 'rle' document file.
Secunia
rated both vulnerabilities as 'highly critical', the firm's second highest
threat classification. The flaws affect versions CS2 and CS3 of Photoshop, and
one of the flaws also affects Photoshop Elements 5.0.
The set of three patches for the Flash player browser plug-in were also rated
by Secunia as 'highly critical'. The patch affects versions 7, 8 and 9 of the
player.
The most severe of the vulnerabilities could allow an attacker to remotely
execute code on a target system, while another flaw could allow an attacker to
access sensitive user information.
If left unpatched, the Flash player vulnerabilities could put millions of
users worldwide at risk.
Adobe estimated earlier this year that 98.7 per cent of internet users
worldwide had some version of the plug-in.
EXCEPTIONAL .NET (ASP / VB / C#) DEVELOPER – SURREY HEDGE FUND My client is a CASH RICH leading Microsoft Technology focused Hedge Fund currently experiencing unrivalled success – they need to bring on fresh ... more >
Position: Software Developer – Modelling / Simulations Salary: £27-37,000 Location: Luton, Bedford, Milton Keynes Apply to: a.ross@jamrecruitment.co.uk This is an excellent chance to join one of the UK’s leading Defence businesses operating at the forefront ... more >
Position: Software Engineer – C/C++/GUI/UML Salary: £30-40,000 Location: Leicester Apply to: a.ross@jamjobs.co.uk This is a fabulous opportunity to join a globally recognised organisation working as part of a team taking innovative and cutting edge solutions ... more >
Position: Embedded Software / Systems Engineer Salary: £25-40,000 Location: Barrow, Cumbria, Carlisle, Lake District Apply to: a.ross@jamrecruitment.co.uk (inc salary expectations, availability and notice period) This is an exciting opportunity to join one of the UKs ... more >More job opportunities