dslreports logo
site
 
    All Forums Hot Topics Gallery
spc

spacer




how-to block ads


Search Topic:
uniqs
5079
share rss forum feed


StuartMW
Who Is John Galt?
Premium
join:2000-08-06
Galt's Gulch
kudos:2

2 edits

7 recommendations

Adobe Flash Player 11.4.402.287

The last release version was 11.4.402.278 and this is 11.4.402.287 to aid confusion.

It's available here.

»www.adobe.com/products/flashplay···on3.html

The Windows EXE's are signed with a certificate with the serial number

4d 4a a1 fd f2 6f 9f 33 53 d6 26 14 ed a6 62 37
 

and expiring 10/1/2015.

No idea what the changes are. It might just be the last version signed with a new certificate.

More info:

Flash Player 11.4.402.278.exe ==> 10,213,296 bytes
Flash Player 11.4.402.287.exe ==> 10,220,472 bytes (7,176 larger)

Flash Player 11.4.402.278 (IE).exe ==> 9,573,296 bytes
Flash Player 11.4.402.287 (IE).exe ==> 9,575,864 bytes (2,568 larger)

--
Don't feed trolls--it only makes them grow!

art22gg
Premium
join:2005-02-16
Courtenay, BC
kudos:6

Thanks Stuart...



Dustyn
Premium
join:2003-02-26
Ontario, CAN
kudos:11

1 edit
reply to StuartMW

Thanks!
That is also the only link I use to install Flash updates.




Triple Helix
Go Blue Jays Go
Premium
join:2007-07-26
Oshawa, ON
kudos:7
Reviews:
·Rogers Hi-Speed
reply to StuartMW

Thanks StuartMW See Profile

TH

--
Triple Helix - Microsoft® MVP Consumer Security 2012
VIP Member Of ASAP - (Alliance of Security Analysis Professionals™)
Official Webroot SecureAnywhere (Prevx) Support Forum Helper.
(H59 Clan)



therube

join:2004-11-11
Randallstown, MD
Reviews:
·Comcast
·Verizon Online DSL

2 recommendations

reply to StuartMW

"Adobe has released security updates for Adobe Flash Player 11.4.402.278 and earlier versions for Windows, Adobe Flash Player 11.4.402.265 and earlier versions for Macintosh, Adobe Flash Player 11.2.202.238 and earlier for versions for Linux, Adobe Flash Player 11.1.115.17 and earlier versions for Android 4.x, and Adobe Flash Player 11.1.111.16 and earlier versions for Android 3.x and 2.x. These updates address vulnerabilities that could cause a crash and potentially allow an attacker to take control of the affected system.

...

These updates resolve buffer overflow vulnerabilities that could lead to code execution
...

These updates resolve memory corruption vulnerabilities that could lead to code execution
..."

»www.adobe.com/support/security/b···-22.html



therube

join:2004-11-11
Randallstown, MD

1 recommendation

reply to StuartMW

Security Advisory: Revocation of Adobe code signing certificate



StuartMW
Who Is John Galt?
Premium
join:2000-08-06
Galt's Gulch
kudos:2

Which is why I posted the certificate info above

»Adobe's code signing certificate has been stolen
--
Don't feed trolls--it only makes them grow!



StuartMW
Who Is John Galt?
Premium
join:2000-08-06
Galt's Gulch
kudos:2

1 recommendation

reply to therube

"These updates resolve buffer overflow vulnerabilities that could lead to code execution
...

These updates resolve memory corruption vulnerabilities that could lead to code execution
..."

The usual then...
--
Don't feed trolls--it only makes them grow!


Cartel
Premium
join:2006-09-13
Chilliwack, BC
kudos:2
Reviews:
·TekSavvy DSL
·Shaw
·TELUS
reply to StuartMW

said by StuartMW:

The last release version was 11.4.402.278 and this is 11.4.402.287 to aid confusion.

It's available here.

»www.adobe.com/products/flashplay···on3.html

The Windows EXE's are signed with a certificate with the serial number

4d 4a a1 fd f2 6f 9f 33 53 d6 26 14 ed a6 62 37
 

and expiring 10/1/2015.

No idea what the changes are. It might just be the last version signed with a new certificate.

More info:

Flash Player 11.4.402.278.exe ==> 10,213,296 bytes
Flash Player 11.4.402.287.exe ==> 10,220,472 bytes (7,176 larger)

Flash Player 11.4.402.278 (IE).exe ==> 9,573,296 bytes
Flash Player 11.4.402.287 (IE).exe ==> 9,575,864 bytes (2,568 larger)

I think that link croaked.


StuartMW
Who Is John Galt?
Premium
join:2000-08-06
Galt's Gulch
kudos:2

1 edit

Click for full size
said by Cartel:

I think that link croaked.

I downloaded from the page and just revisited it. The page is there. The link is good.
--
Don't feed trolls--it only makes them grow!


La Luna
RIP Lisa
Premium
join:2001-07-12
Warwick, NY
kudos:3
reply to Cartel

Nope, the link is fine, just downloaded from there.

Just a heads up, make sure to uncheck the McAfee scan thingy before you download if you don't want it.



Cartel
Premium
join:2006-09-13
Chilliwack, BC
kudos:2
reply to StuartMW

It was my end sorry.



La Luna
RIP Lisa
Premium
join:2001-07-12
Warwick, NY
kudos:3

NP, sometimes it happens. Glad it's working for you now.



StuartMW
Who Is John Galt?
Premium
join:2000-08-06
Galt's Gulch
kudos:2

1 recommendation

reply to Cartel

Prolly because every man and his dog is hitting that page.
--
Don't feed trolls--it only makes them grow!



MarkAW
Barry White
Premium
join:2001-08-27
Canada
kudos:16
reply to StuartMW



Thanks StuartMW See Profile.


StuartMW
Who Is John Galt?
Premium
join:2000-08-06
Galt's Gulch
kudos:2

1 edit

2 recommendations

reply to StuartMW

FYI Microsoft has released a patch for IE10 on Win8/Server 2012.

»www.microsoft.com/en-us/download···id=34812

»www.microsoft.com/en-us/download···id=34813

»www.microsoft.com/en-us/download···id=34816
--
Don't feed trolls--it only makes them grow!


gugarci
Premium
join:2004-02-25
Lyndhurst, NJ
reply to StuartMW

Thanks.



Dustyn
Premium
join:2003-02-26
Ontario, CAN
kudos:11

1 recommendation

reply to StuartMW

That was quick!
Unlike the last one.
I was thinking they would not release it until as early as patch Tuesday.
--
Remember that cool hidden "Graffiti Wall" here on BBR? After the name change I became the "owner", so to speak as it became: Dustyn's Wall »[Serious] RIP


Buddel
If it ain't broke, don't fix it.
Premium
join:2004-03-06
EU
kudos:3
reply to StuartMW

Got it. Thank you.



StuartMW
Who Is John Galt?
Premium
join:2000-08-06
Galt's Gulch
kudos:2
reply to Dustyn

said by Dustyn:

That was quick!

Maybe they're trying to "bake in" the latest flash before the Oct 26th Win8 release date.
--
Don't feed trolls--it only makes them grow!


siljaline
I'm lovin' that double wide
Premium
join:2002-10-12
Montreal, QC
kudos:17
reply to StuartMW

Security updates available for Adobe Flash Player
APSB12-22



StuartMW
Who Is John Galt?
Premium
join:2000-08-06
Galt's Gulch
kudos:2

1 recommendation

Posted above

»Re: Adobe Flash Player 11.4.402.287
--
Don't feed trolls--it only makes them grow!



siljaline
I'm lovin' that double wide
Premium
join:2002-10-12
Montreal, QC
kudos:17

Probably not a bad thing having a dupe of a bulletin in the same thread as Adobe seems to have been lacking these of late.



StuartMW
Who Is John Galt?
Premium
join:2000-08-06
Galt's Gulch
kudos:2

True. This release actually seems to have fixed something--for a few weeks anyway.
--
Don't feed trolls--it only makes them grow!



Boricua
Premium
join:2002-01-26
Sacramuerto
reply to StuartMW

Fracking great !! Now I'm going to have users beckoning me to install this sh*t because they don't have admin rights (sigh).
--
Illegal aliens have always been a problem in the United States. Ask any Indian. Robert Orben



Name Game
Premium
join:2002-07-07
Grand Rapids, MI
kudos:7
reply to StuartMW

I was always skeptical of this bit of fluff since they stuffed the turkey with it

Ubiquitous deployment via the Java Runtime Environment (JRE)
The JavaFX Runtime is installed with the Java Runtime Environment, ensuring its availability on more than 97% of enterprise desktops worldwide (Forrester, November 2009: Enterprise Platform Trends, H1 2009)
»en.wikipedia.org/wiki/Java_virtual_machine

and now we have adobe wanting us also to jump again...if its not one group its the other.
--
Gladiator Security Forum
»www.gladiator-antivirus.com/


StuartMW
Who Is John Galt?
Premium
join:2000-08-06
Galt's Gulch
kudos:2

Well I'm sure Sun will release a new version of Java any day now. We'll then be able to use it until a 0-day exploit is announced a few days later.
--
Don't feed trolls--it only makes them grow!



StuartMW
Who Is John Galt?
Premium
join:2000-08-06
Galt's Gulch
kudos:2
reply to Name Game

said by Name Game:

..if its not one group its the other.

Yup. I think they confuse "sandbox" with sand castle.

»footage.shutterstock.com/clip-13···ach.html
--
Don't feed trolls--it only makes them grow!


Blackbird
Built for Speed
Premium
join:2005-01-14
Fort Wayne, IN
kudos:3
Reviews:
·Frontier Communi..

1 recommendation

reply to therube

said by therube:

"...These updates resolve buffer overflow vulnerabilities that could lead to code execution
..."

»www.adobe.com/support/security/b···-22.html

So... 15 years into Flash releases, and buffer overflows are still being uncovered in released code? I wonder if anybody's vetting their new-version code for overflows... other than users-in-the-field, of course.
--
"Is life so dear, or peace so sweet, as to be purchased at the price of chains and slavery? Forbid it, Almighty God!" -- P.Henry, 1775


StuartMW
Who Is John Galt?
Premium
join:2000-08-06
Galt's Gulch
kudos:2

1 recommendation

said by Blackbird:

I wonder if anybody's vetting their new-version code for overflows...

You answered your own question

quote:
other than users-in-the-field, of course.

World's longest beta...
--
Don't feed trolls--it only makes them grow!