Flash Player Type Confusion Critical Vulnerability, Another Reason Not to Use It
#1
Quote:Adobe patched a critical vulnerability in Flash Player which could be exploited by potential attackers to trigger an arbitrary code execution condition within the context of the current user.

The Type Confusion security issue is present in Flash Player 31.0.0.148 and earlier releases, and it affects versions running on multiple platforms, from Windows and macOS to Linux and Chrome OS.
As detailed by the Common Weakness Enumeration platform, type confusion errors appear when "The program allocates or initializes a resource such as a pointer, object, or variable using one type, but it later accesses that resource using a type that is incompatible with the original type."

Moreover, the CVE-2018-15981 vulnerability was rated by Adobe as a critical issue, "which, if exploited would allow malicious native-code to execute, potentially without a user being aware."
Given that successful exploitation of the security bug may result in system compromise and would allow adversaries to execute code without the user's knowledge, Flash Player users should update as soon as possible.

Source: https://news.softpedia.com/news/flash-pl...3887.shtml
[-] The following 2 users say Thank You to silversurfer for this post:
  • Der.Reisende, harlan4096
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
AdGuard Browser Extension 5.1.101 (MV3 s...
AdGuard Browser Ex...harlan4096 — 07:39
Europe just launched DNS4EU, a public DN...
DNS is one of the ...harlan4096 — 07:36
LibreOffice 25.2.4
LibreOffice 25.2.4...harlan4096 — 07:25
K-Lite Codec Pack 19.0.0 / 18.9.7 Update
Changes in 19.0.0:...harlan4096 — 07:24
Microsoft Edge 137.0.3296.68
Version 137.0.3296...harlan4096 — 07:23

[-]
Birthdays
Today's Birthdays
avatar (47)vadimTob
avatar (37)leannauu4
Upcoming Birthdays
avatar (38)Tedscolo
avatar (45)brakasig
avatar (44)JamesReshy
avatar (46)Francisemefe
avatar (39)leoniDup
avatar (38)Patrizaancem
avatar (38)biobdam
avatar (41)zacforat
avatar (46)NemrokReks
avatar (37)Barrackleve
avatar (39)Julioagopy
avatar (49)aolaupitt2558
avatar (39)storoBox
avatar (47)kinotHeemn
avatar (38)Ceballos1976
avatar (39)efynu
avatar (31)horancos

[-]
Online Staff
There are no staff members currently online.

>