Update to Adobe Flash 0-day: Patch will be out soon
Adobe updated its advisory, stating that we should have a patch at least for the "non sandbox" versions of Adobe Acrobat and Reader by April 25th [1]. Flash player will get a fix even earlier (April 15th = this week Friday). Adobe Reader X for Windows, which uses the new "Protected Mode" feature to limited the exploitability of this vulnerability, will have to wait until June 14th.
Little Table to clarify:
Flash | Reader 9 | Reader 10.x | Reader 10.0.1 | Reader 10.0.2 aka "X" | |
Windows | 4/15 | 4/25 | 4/25 | 4/25 | 6/14 |
Macintosh | 4/15 | 4/25 | 4/25 | 4/25 | 4/25 |
for more details, see the URL below.
[1] http://www.adobe.com/support/security/advisories/apsa11-02.html
Update: corrected patch date for Adobe Reader X for Windows. Was 6/25.. but should have been 6/14. Thanks Luc for pointing this out to me!)
------
Johannes B. Ullrich, Ph.D.
SANS Technology Institute
Twitter
My next class:
Application Security: Securing Web Apps, APIs, and Microservices | Online | US Eastern | Jan 27th - Feb 1st 2025 |
×
Diary Archives
Comments
John Hardin
Apr 14th 2011
1 decade ago