Adobe has announced the release of Adobe Flash Player 220.127.116.116 to address a critical vulnerability (CVE-2015-0311) which exists in Adobe Flash Player 18.104.22.1687 and earlier versions for Windows and Macintosh. Successful exploitation could cause a crash and potentially allow an attacker to take control of the affected system. Its known that this vulnerability is being actively exploited in the wild via drive-by-download attacks against systems running Internet Explorer and Firefox on Windows 8.1 and below.
Users who have enabled auto-update for the Flash Player desktop runtime will be receiving version 22.214.171.1246 beginning on January 24. This version includes a fix for CVE-2015-0311. Adobe expects to have an update available for manual download during the week of January 26, and we are working with our distribution partners to make the update available in Google Chrome and Internet Explorer 10 and 11. For more information on updating Flash Player please refer to this post.
Affected software versions
- Adobe Flash Player 126.96.36.1997 and earlier versions for Windows and Macintosh
- Adobe Flash Player 188.8.131.522 and earlier 13.x versions
- Adobe Flash Player 184.108.40.2068 and earlier versions for Linux
Update Adobe Flash Player 220.127.116.116
sudo apt-get update sudo apt-get install flashplugin-installer