Skip to main content

Adobe issues emergency patch for yet another Flash exploit

A hacker inputting code into a system.
Image used with permission by copyright holder
Have you updated Flash recently? Even if you have, you might want to make sure you’re up to date, as yesterday Adobe issued an emergency patch addressing several critical vulnerabilities that the company says “could potentially allow an attacker to take control of the affected system.”

The vulnerabilities affect those using the plugin in Windows, Mac, and Linux, including those versions provided in browsers like Chrome. And at least one of these bugs is currently known to those who walk on the darker side of the Web, with Adobe saying that the patch fixes an exploit that is being used in “limited, targeted attacks.”

While that exploit is singled out as particularly nasty since it can be triggered simply by visiting the wrong website, the rest could be just as dangerous. The vulnerabilities include “13 use-after-free vulnerabilities, four memory corruption vulnerabilities, and one type-confusion vulnerability,” as noted by CSO.

If you’re running anything earlier than Flash version 20.0.0.267, you’ll need to update. If you aren’t sure, head over to Adobe’s About Flash Player page, which will show you the version you’re running. The security bulletin issued by the company provides instructions on how to update the software.

This is far from the first time this year that such a patch has been released. Earlier this year we reported that the Italian spyware firm Hacking Team had itself been hacked. Among the files distributed as a result were multiple major security flaws in Flash that the group had kept to itself in order to use in its work.

These types of vulnerabilities, along with improvements in various alternative Web technologies, have led to many companies deciding to abandon Flash as a whole. Several sites including YouTube have dropped Flash in favor of HTML5 video, while in July, Facebook’s security chief called for Adobe to set an end-of-life date for the aging technology.

It seems that 2015 may have been the beginning of the end for Flash, but what does 2016 hold in store?

Editors' Recommendations

Kris Wouk
Former Digital Trends Contributor
Kris Wouk is a tech writer, gadget reviewer, blogger, and whatever it's called when someone makes videos for the web. In his…
The MSI Claw just got both faster and cheaper
Sonic Superstars running on the MSI Claw.

Compared to some of the best gaming handhelds, the Intel Core Ultra-powered MSI Claw has been behind in terms of overall performance. Interest has faded and it is cheaper at some retailers, but there's some hope. The latest BIOS updates for the device are improving gameplay, making it significantly faster. Combine that with some recent price cuts, and you're looking at an increasingly more promising-looking device -- at least, in theory.

Noted by MSI in a forum post, the BIOS on the handheld was recently bumped to version E1T41IMS.106, with Intel Graphics moving up yo version 31.0.101.5382. Thanks to these two updates, you can get big performance improvements in select games. Hogwarts Legacy, for example, now runs with rates that are up to 27.6% faster. Forza Horizon 5, meanwhile, runs with 18.4% faster frame rates.

Read more
The Vision Pro is already in trouble. Here’s how Apple can turn the tide
A man wears an Apple Vision Pro headset.

Apple’s Vision Pro headset lit the world on fire when it was announced at the Worldwide Developers Conference (WWDC) in June 2023, and again when it launched in February of this year. But in the months since, it’s apparently been losing steam, with sales down and people staying away from in-store demonstrations. That doesn’t bode well for Apple’s “next big thing.”

The key question, though, is whether this an actual problem for Apple. And if so, what can the company do about it?
In free fall?
If you read Bloomberg journalist Mark Gurman’s latest Power On newsletter, you’ll see some concerning reporting, at least from Apple’s perspective. Citing staff at Apple’s retail stores, Gurman claims that “Demand for [Vision Pro] demos is way down. People who do book appointments often don’t show up.”

Read more
Buying a Steam Deck has never been cheaper
Steam Deck over a pink background.

Valve is serving up huge price cuts on the Steam Deck, but there's a catch -- the consoles are refurbished. Part of the Certified Refurbished Steam Deck program, these handhelds have been fixed up by Valve to reportedly run like new -- and they're significantly cheaper. You can save up to $90, but is this too good to be true? It doesn't have to be.

Buying refurbished devices and hardware can be scary, but when the goodies come directly from the manufacturer, it becomes less risky. This is the case with Valve, which is now selling all three models of the LCD Steam Deck, refurbished and at a price cut. If this sounds good, you can now grab the base model for $279 instead of $349 ($70 savings), while the 256GB NVMe model costs $319 instead of $399 when purchased new. Lastly, the top handheld in the lineup with 512GB of storage costs just $359 instead of $449, which is $90 in savings.

Read more