Skip to main content

Adobe Flash Player has ‘critical’ security issue, won’t be addressed until next week

If you use Adobe’s Flash Player at all, tread cautiously. The company released a security advisory late yesterday revealing that a “critical vulnerability” was found in pretty much all versions of the multimedia platform as well as in Adobe Acrobat and Adobe Reader.

Affected versions include: “Adobe Flash Player 10.2.152.33 and earlier versions (Adobe Flash Player 10.2.154.18 and earlier for Chrome users) for Windows, Macintosh, Linux and Solaris operating systems, Adobe Flash Player 10.1.106.16 and earlier versions for Android, and the Authplay.dll component that ships with Adobe Reader and Acrobat X (10.0.1) and earlier 10.x and 9.x versions of Reader and Acrobat for Windows and Macintosh operating systems.”

The vulnerability could result in a crash or potentially be exploited by a hacker to “take control of the affected system.” Worse, there are reports already that this security hole is being exploited via a Flash file (.swf) embedded in a Microsoft Excel (.xls) spreadsheet that arrives as an e-mail attachment. So for the two of you who happily download everything that comes into your mailbox, even if you don’t recognize the sender… stop. It appears that there are no similar exploits out there for Reader or Acrobat yet; Adobe notes that the Protected Mode in Reader X “would prevent an exploit of this kind from executing.”

Work on a fix is underway. Those versions of software with critical flaws — which is everything other than Reader X, since running in Protected Mode will keep you safe — are getting the most attention. Adobe expects a fix to go live “during the week of March 21, 2011.” Reader X for Windows will be addressed as well, but not until the applications quarterly security update, which is currently set for release on June 14.

Unfortunately, the question at the start of this post is a rhetorical one. If you’re on the Internet in any way, then you use Flash. Unless you’re using an Apple iDevice, of course. Somewhere in Cupertino, Steve Jobs is snickering.

Editors' Recommendations

Topics
Adam Rosenberg
Former Digital Trends Contributor
Previously, Adam worked in the games press as a freelance writer and critic for a range of outlets, including Digital Trends…
How to delete your Gmail account (and what you need to know)
The top corner of Gmail on a laptop screen.

Is it time to part ways with your Gmail account? Whether you’re moving onto greener email pastures, or you want to start fresh with a new Gmail address, deleting your old Gmail account is something anyone can do. Of course, we’re not just going to bid you farewell without a guide all our own. If you need to delete your Gmail account, we hope these step-by-step instructions will make the process even easier.

Read more
How to alphabetize data in an Excel spreadsheet
A Microsoft Excel icon in the dock on a Macbook.

Manually organizing data in Microsoft Excel is a real pain. That's why we don't recommend doing it. One simple task, learning how to alphabetize in Excel, is not necessarily as intuitive as we would like. Here's how to get things sorted in a logical, alphabetical order.

Read more
How to build a table of contents in Microsoft Word
Microsoft word document.

Navigating through a Microsoft Word document can be a tedious task for some. Assignments and contracts can lead to many pages that can be hard to keep track of. One solution Microsoft offers for this is a table of contents. In addition to providing an outline and general overview of the content, the feature gives the document a more professional look.

Here’s a guide on how to create a table of contents in Microsoft Word.

Read more