October 16, 2017 By Catalin Cimpanu
Last week, Adobe claimed it wouldn't release security updates for the first time since July 2012 because it had nothing to patch.
Less than six days later, the company released a critical update for Flash Player that fixes a zero-day vulnerability exploited in live attacks.
The zero-day, CVE-2017-11292, is a "type confusion" that leads to remote code execution on targeted systems.
The issue affects Flash Player 27.0.0.159 on Windows, Linux, macOS, and Chrome OS. Adobe fixed the vulnerability in Flash Player version 27.0.0.170.
Full Article.
Login to the community
No account yet? Create an account
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.
