macnn

04/10/2008, 11:05am, EDT

Thursday, April 10th

Adobe closes critical Flash exploit

Adobe has released an update for its ubiquitous Flash Player, addressing a critical security vulnerability. The v9.0.124.0 patch specifically targets an exploit related to Shockwave (SWF) files; in order to be affected, a user must load a malicious SWF file within Flash Player, which in turn gives hackers the ability to run authorized code on a computer. The vulnerability exists in Flash Player versions 9.0.115.0 and 8.0.39.0, and all prior incarnations. The update is available for all operating systems supported by Flash and browsers including Firefox, Opera and more.

Contained in the fix is a new feature, called cross-domain policy check. The Flash Player uses policy files to grab content from other domains, but although this enables advanced functions, it is possible for hackers to create their own policy files. If these files receive acceptance from the appropriate server, SWF files can then be used to load content from outside an official server's domain.


Filed under: security, software
Other story tags: Adobe, Flash

, , comment, del.icio.us, slashdot, digg


post a comment
Reader Reactions (Please use <i></i> for italic text)

subscribe to comments
for this article




Expand All   Global Settings
Be the first to post comments on this story.
Your Comments

In order to post comments: If you are a registered member, please login with your MacNN Forums username and password otherwise please uncheck the checkbox below.


Registered Member?
macnn forums login:

macnn forums password:

Not a member of the MacNN forums? Register now for free.

RSS Feeds

Have the latest content delivered to your desktop via RSS. Use the links below to get access to a specific blog, news, or reviews feed.



  MacNN -all

  MacNN Reviews

  MacNN Podcasts

  iPodNN

  Electronista

  Left Lane News
Autokredit im Vergleich - Here is some car credit information for our Germany visitors.
Turn your laptop into CASH: Sell us your used laptop. Working or not. Get money FAST. Instant online quote. Shipping is FREE.

PowerBookMedic will fix any Powerbook, iBook, iPod: We offer Parts, Hard Drives, Superdrives, Ram Upgrades & Repairs all backed up w/ our 1YR Warranty!

Looking For A NEW LAPTOP? Build Your Own!: CHECK IT OUT! Build your Intel®-Powered Laptop With ZipZoomFly. Chassis, Components, Everything.

CHECK OUT THE VIERA FROM PANASONIC: Enter a New Visual Era with Panasonic VIERA HDTVs. An Enhanced Experience.

This Is The #1 Projector For Education And Business: Check Out The Sony VPL-E Series Of Data Projectors. Bright, Stylish, Easy To Use.

Xim, inc: Softward & System Integration. San Francisco, CA.

Buy from The Apple Store, iTunes.com, Amazon.com, TechDepot, OfficeDepot, Computers4Sure, or donate.