dslreports logo
Search similar:


uniqs
3563

siljaline
I'm lovin' that double wide
Premium Member
join:2002-10-12
Montreal, QC
kudos:18
·Bell Fibe Internet

siljaline

Premium Member

Security update available for Adobe Flash Player

Security update available for Adobe Flash Player

Release date: June 5, 2011
• Vulnerability identifier: APSB11-13
• CVE number: CVE-2011-2107
• Platform: All Platforms
quote:
An important vulnerability has been identified in Adobe Flash Player 10.3.181.16 and earlier versions for Windows, Macintosh, Linux and Solaris, and Adobe Flash Player 10.3.185.22 and earlier versions for Android. This universal cross-site scripting vulnerability (CVE-2011-2107) could be used to take actions on a user's behalf on any website or webmail provider, if the user visits a malicious website. There are reports that this vulnerability is being exploited in the wild in active targeted attacks designed to trick the user into clicking on a malicious link delivered in an email message.

Adobe recommends users of Adobe Flash Player 10.3.181.16 and earlier versions for Windows, Macintosh, Linux and Solaris update to Adobe Flash Player 10.3.181.22 (10.3.181.23 for ActiveX). Adobe expects to make available an update for Flash Player 10.3.185.22 for Android during the week of June 6, 2011.

Adobe is still investigating the impact to the Authplay.dll component that ships with Adobe Reader and Acrobat X (10.0.2) and earlier 10.x and 9.x versions of Adobe Reader and Acrobat for Windows and Macintosh operating systems. Adobe is not aware of any attacks targeting Adobe Reader or Acrobat in the wild.
See how the Adobe Bulletin affects your situation.

Oregonian
Premium Member
join:2000-12-21
West Linn, OR

Oregonian

Premium Member

Thank you.

siljaline
I'm lovin' that double wide
Premium Member
join:2002-10-12
Montreal, QC
kudos:18

siljaline

Premium Member

You're welcome, Oregonian

lordpuffer
RIP lil
Premium Member
join:2004-09-19
Albuquerque, NM
kudos:2

lordpuffer to siljaline

Premium Member

to siljaline
Thank you siljaline .
Mele20
Premium Member
join:2001-06-05
Hilo, HI
kudos:8

2 edits

Mele20 to siljaline

Premium Member

to siljaline
I just updated Flash on IE6 and the update RESET the Flash Player Settings Manager settings to default. Maybe that only happens on IE but it sure is irritating. I don't like using the Settings Manager in the Control Panel because it doesn't display correctly so I had to do it at Adobe's site.

EDIT: I just tried to install it on a virtual machine running XP Pro and IE8. Windows blocked the installation saying the publisher could not be verified. Then I recalled that this happened with the last Flash update on IE 7 and 8 and we discussed it here and there was a workaround but I have forgotten what it is. Now I have to find that thread (ugh, I hate getting older and having a poor memory). Why can't Adobe fix this? AWFUL of them to be offering a download where the publisher cannot be verified.

Second edit: »Re: Adobe Flash Player 10.3 released (new Privacy Controls)

I guess I should have just lied on the Adobe forum registration page (they require your FULL NAME, ADDRESS, PHONE NUMBER AND A BUNCH OF NOSY QUESTIONS MUST BE ANSWERED RELATING TO IT PERSONS ONLY) so I could inform them of this problem on IE 7 and 8. I assume no one informed them as surely they would have fixed this by now! Surely they are not THAT irresponsible that they know about it and don't give a shit so have not fixed it.

antdude
A Ninja Ant
VIP
join:2001-03-25
United State
kudos:5

antdude to siljaline

VIP

to siljaline
Wow! On a Sunday? Must be an emergency release!

therube
join:2004-11-11
Randallstown, MD
·Xfinity
·Verizon Online DSL

2 edits

therube to siljaline

Member

to siljaline
quote:
This universal cross-site scripting vulnerability (CVE-2011-2107) could be used to take actions on a user's behalf on any website or webmail provider, if the user visits a malicious website.

Now XSS is common & common knowledge with browsers.
Got to figure that this Flash exploit has existed ... forever?

Can't even see the CVE (yet), »secunia.com/advisories/c ··· 11-2107/.

rcdailey
Dragoonfly
Premium Member
join:2005-03-29
Rialto, CA

rcdailey to siljaline

Premium Member

to siljaline
Thanks. I noticed a minor difference in the version number between ActiveX and the plugin for Firefox. Active X is 10.1.181.23 and the plugin is 10.1.181.22. Maybe I just never noticed a difference in the past.

therube
join:2004-11-11
Randallstown, MD

therube

Member

In general they have always been in sync.

The version for Chrome has been different.
And there was the update put out a few days ago that affected only IE.

rcdailey
Dragoonfly
Premium Member
join:2005-03-29
Rialto, CA

rcdailey

Premium Member

That probably explains the difference between ActiveX and the plugin. Both of my flash versions needed an update.

Dude111
An Awesome Dude
Premium Member
join:2003-08-04
kudos:14

Dude111 to Mele20

Premium Member

to Mele20

 

quote:
I just updated Flash on IE6 and the update RESET the Flash Player Settings Manager settings to default.
Yea i always had problems auto updating it so i just took the OCX file and placed it in the macromed directory.. (Im using flash 9's OCX)

siljaline
I'm lovin' that double wide
Premium Member
join:2002-10-12
Montreal, QC
kudos:18
·Bell Fibe Internet

siljaline to antdude

Premium Member

to antdude

Re: Security update available for Adobe Flash Player

Apparently, so sez our buddy Brian Krebs - seriously, for Adobe to release such a thing on a weekend, is serious, antdude

MarkAW
Barry White
Premium Member
join:2001-08-27
Canada
kudos:16

MarkAW to siljaline

Premium Member

to siljaline
Thanks siljaline got it.

jaynick
lit up
Premium Member
join:2001-02-06
Sterling Heights, MI
kudos:2

jaynick to siljaline

Premium Member

to siljaline
Thanks much!
redwolfe_98
Premium Member
join:2001-06-11
kudos:3

redwolfe_98 to siljaline

Premium Member

to siljaline
maybe it is something with my computer (an activex killbit? ) but after installing the new version of flashplayer, when i used the "settings manager", to adjust the settings, the settings manager's tabs wouldn't work, with IE 6.. the settings manager's tabs would work with "firefox"..

i was using the online version of the "settings manager", not the one in "control panel"..

so, i am wondering if anyone else is seeing the same thing, where the settings manager's tabs won't work when using IE 6?
sly53
join:2011-06-06
united state

sly53

Member

I am new here, just registered, have been reading your site for a long time just never posted. Redwolfe_98, I also noticed the tabs in settings manager(online) do not work, but you can use the links on the left side of that page and go to each of the tabs, you just can not click on the tabs directly, hope that makes since. I would also like to ask I only have the active x and not the plug in one as shown above, is it because I only use IE9, is the plug in for other browsers? I signed up for a basic account is that why I do not see a way to post a photo?
sly53

sly53

Member

I found how to post a photo, this is what I was asking about the plug-in version, would that be for browsers other than IE9?
DrDemento
join:2005-07-25
Brick, NJ

1 edit

DrDemento to redwolfe_98

Member

to redwolfe_98
Same exact scenario for me using IE8 on 3 XP computers.
(tabs on global settings manager not working for me either)

DrDemento69
@comcast.net

DrDemento69 to redwolfe_98

Anon

to redwolfe_98
Same exact scenario for me with IE8 on 3 XP computers.

jaykaykay
4 Ever Young
MVM
join:2000-04-13
USA
kudos:24

jaykaykay to siljaline

MVM

to siljaline
Per usual, a huge thank you for heads up. Wasn't on yesterday, so I didn't get it till today, but I did get it.

siljaline
I'm lovin' that double wide
Premium Member
join:2002-10-12
Montreal, QC
kudos:18

siljaline to MarkAW

Premium Member

to MarkAW
This would be under what O/S, MarkAW
siljaline

siljaline to jaykaykay

Premium Member

to jaykaykay
You're welcome, jaykaykay

Pentangle
With our thoughts we make the world.
Premium Member
join:2006-06-01
Vancouver BC
kudos:2

Pentangle to siljaline

Premium Member

to siljaline
Thanks siljaline—got it.

Triple Helix
Troll Hunter
Premium Member
join:2007-07-26
Oshawa, ON
kudos:7
·Rogers Hi-Speed

Triple Helix to sly53

Premium Member

to sly53
Click for full size
@ sly53 and DrDemento. The Plug-in is for other Browsers such as mentioned in the picture and link provided! »www.adobe.com/software/f ··· h/about/

TH

MarkAW
Barry White
Premium Member
join:2001-08-27
Canada
kudos:16

MarkAW to sly53

Premium Member

to sly53
said by sly53:

I found how to post a photo, this is what I was asking about the plug-in version, would that be for browsers other than IE9?

Yes.
MarkAW

MarkAW to siljaline

Premium Member

to siljaline
said by siljaline:

This would be under what O/S, MarkAW

Windows 7 32/64bit and Vista 32bit.
grumpi
join:2001-03-28
*****

grumpi to siljaline

Member

to siljaline
Thanks siljaline!

Dustyn
Premium Member
join:2003-02-26
Ontario, CAN
kudos:13
·TekSavvy Cable
·Rogers Hi-Speed

Dustyn to siljaline

Premium Member

to siljaline
Missed this yesterday,
Thank you siljaline
Mele20
Premium Member
join:2001-06-05
Hilo, HI
kudos:8

Mele20 to redwolfe_98

Premium Member

to redwolfe_98
said by redwolfe_98:

maybe it is something with my computer (an activex killbit? ) but after installing the new version of flashplayer, when i used the "settings manager", to adjust the settings, the settings manager's tabs wouldn't work, with IE 6.. the settings manager's tabs would work with "firefox"..

i was using the online version of the "settings manager", not the one in "control panel"..

so, i am wondering if anyone else is seeing the same thing, where the settings manager's tabs won't work when using IE 6?

I found the problem to be the FIRST tab. Try the second or third tab first. Do it from the left side of the panel not from the icons on the Settings Manager window. It will work. Then you can try the first tab again and it works! I had this experience with Flash on both IE6 and IE8. I was using the online version of the Settings Manager.

siljaline
I'm lovin' that double wide
Premium Member
join:2002-10-12
Montreal, QC
kudos:18
·Bell Fibe Internet

siljaline

Premium Member


Adobe Control Panel
The Adobe Control Panel Manager is flawed since I was not given the correct ActiveX control from the update, now fixed at 10.3.181.23 | This would be under Win XP Pro | IE8 I had to manually uninstall Flash to get what I needed for my situation.