Adobe has announced the release of Adobe Flash Player 22.214.171.1246 to address a critical vulnerability (CVE-2015-0311) which exists in Adobe Flash Player 126.96.36.1997 and earlier versions for Windows and Macintosh. Successful exploitation could cause a crash and potentially allow an attacker to take control of the affected system. Its known that this vulnerability is being actively exploited in the wild via drive-by-download attacks against systems running Internet Explorer and Firefox on Windows 8.1 and below.
Users who have enabled auto-update for the Flash Player desktop runtime will be receiving version 188.8.131.526 beginning on January 24. This version includes a fix for CVE-2015-0311. Adobe expects to have an update available for manual download during the week of January 26, and we are working with our distribution partners to make the update available in Google Chrome and Internet Explorer 10 and 11. For more information on updating Flash Player please refer to this post.
Affected software versions
Update Adobe Flash Player 184.108.40.2066
sudo apt-get update sudo apt-get install flashplugin-installer
http://www.adobe.com/products/flash/about/comments powered by Disqus