In association with heise online

20 January 2010, 18:09

Adobe fixes critical holes in Shockwave

  • Twitter
  • Facebook
  • submit to slashdot
  • StumbleUpon
  • submit to reddit

Adobe Logo While all the world is still talking about holes in Internet Explorer and Flash, Adobe has casually closed two critical security holes in Shockwave that allow attackers to inject and execute code. Both Windows and Mac OS X versions of Shockwave up to and including 11.5.2.602 are affected.

The flaws were apparently discovered by security experts at Secunia, who rate the problem as "highly critical". The recommended update procedure involves uninstalling the old version, rebooting the computer and then installing the new version 11.5.6.606. Adobe did not, however, give any reasons why the process is so involved.

It seems that, this time, the vendor has responded exceedingly fast: According to Secunia, the problem was only reported to Adobe on the 12th of January. The regular quarterly patch day Adobe introduced last summer only relates to Adobe Reader and Acrobat.

See also:

(crve)

Print Version | Send by email | Permalink: http://h-online.com/-909319
 


  • July's Community Calendar





The H Open

The H Security

The H Developer

The H Internet Toolkit