Adobe Flash Player 15.0.0.152 Fixes Lots of Memory-Related Glitches

Status
Not open for further replies.

Petrovic

Level 64
Thread author
Verified
Honorary Member
Top Poster
Well-known
Apr 25, 2013
5,355
Adobe released build 15.0.0.152 of Flash Player for Windows and Mac, which addresses a total of 12 security bugs, most of them being memory related.

One of the flaws would allow an attacker to leverage memory leakage vulnerabilities that could be exploited to bypass memory address randomization (ASLR – address space layout randomization).

The risk of code execution has been eliminated in nine cases, which involved glitches such as use-after-free (one), memory corruption (six), and a heap buffer overflow (two).

The company also removed a security bypass vulnerability and one that could be used to bypass the same origin policy.

More than half of the weaknesses eliminated in the latest version of Flash Player have been uncovered by Chris Evans, leader of Google’s recently launched Project Zero initiative.

Users of Chrome and Internet Explorer 10 and 11 will receive the update to build 15.0.0.152 automatically, via browser updates.

For Windows and Mac, the update can be implemented manually from Adobe’s website, or automatically, through the update mechanism built into the product.

The latest version for Linux is 11.2.202.406 and can be received from the developer’s download center.

New versions for Adobe Acrobat and Reader have been re-scheduled for September 15.
 

Ink

Administrator
Verified
Staff Member
Well-known
Jan 8, 2011
22,361
I don't even notice Flash Player updates, since they're all automatic in Chrome and IE.
 
Status
Not open for further replies.

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top