Skip to main content

Adobe warns users to update in wake of ‘critical vulnerability’

adobe flash logo
Image used with permission by copyright holder
Adobe Flash Player is a piece of software that’s used by countless people every single day — and that makes it a clear-cut target for hackers. Yesterday, the company released a statement outlining an update released to counteract what it describes as a ‘critical vulnerability’.

Windows, Mac and Linux users who have Flash Player or related software installed on their computer are all thought to be at risk, although Adobe states that systems running Internet Explorer on Windows 7 and below and Firefox on Windows XP are thought to be the most likely to be affected.

The breach takes advantage of a vulnerability that Adobe is classifying as CVE-2015-3113. The company states that it is being ‘actively exploited’ at present, although the attacks are ‘limited’ in scope and have so far proven to be targeted rather than widespread.

It’s thought that hackers can use the CVE-2015-3113 vulnerability to take control of a user’s system for their own interests. It’s not yet clear what this is being used to accomplish, but anything from hijacking your webcam and microphone to installing a keylogger in an attempt to track personal information is very possible.

Adobe is encouraging all Windows and Mac users to upgrade to Adobe Flash Player 18.0.0.194, which has been released as a direct response to the issue, according to a report from 9to5Mac. Linux users should update the version 11.2.202.468.

Breaches like this can be very serious for users who are targeted, but typically following instructions from the developer and making sure you keep up with the latest software updates will ensure your system’s safety. For more information on how to make sure that you don’t fall victim to this vulnerability, check out Adobe’s Security Bulletin covering CVE-2015-3113.

Editors' Recommendations

Brad Jones
Brad is an English-born writer currently splitting his time between Edinburgh and Pennsylvania. You can find him on Twitter…
Google Bard can now create and edit images, courtesy of Adobe
These are examples of images created with Adobe Firefly.

A few examples of images created with Adobe Firefly. Adobe

Adobe and Google are partnering to bring Firefly, a collection of AI image tools, and Adobe Express into Google Bard. Firefly's unique capabilities and training set it apart from other AI image generators.

Read more
A new WordPress bug may have left 2 million sites vulnerable
wordpress vulnerability version 472 plug in

A flaw in two WordPress custom plug-ins leaves users vulnerable to cross-site scripting attacks (XSS), according to a recent report.

Patchstack researcher Rafie Muhammad recently discovered an XSS flaw in the Advanced Custom Fields and Advanced Custom Fields Pro plug-ins, which are actively installed by over 2 million users worldwide, according to Bleeping Computer.

Read more
Own an iPhone, iPad, or MacBook? Install this critical update right now
IOS 16.4.1 UPDATE.

Apple has released software updates for iPhones and iPads that are light on features, but they are critically important from a security perspective. The updates — iOS 16.4.1 and iPadOS 16.4.1 — started rolling out on Friday, but you should install them on your iPhone and iPad as soon as possible to protect your devices from attacks.

In its official release note, Apple says the updates patch two security flaws that “may have been actively exploited.” Now, Apple doesn’t disclose security issues before conducting thorough research, both in-house and in collaboration with cybersecurity experts. In a nutshell, when Apple publicly announces a security flaw, and it comes with a “Critical Vulnerability” badge, you should grab the fix as soon as Apple makes them available.

Read more