Proactive IT Security
 

Critical vulnerabilities in Adobe Flash player - updates available

2011-05-13 [Software advisories]

Critical vulnerabilitiies have been identified in Adobe Flash player.

Critical is Adobe's highest vulnerability rating and could when exploited allow malicious native-code to execute, potentially without a user being aware.

There are reports that one of the vulnerabilities is being exploited via a Flash file embedded in a Microsoft Word document (.doc file) or Microsoft Excel document (.xls file) delivered as an email attachment.

More information is available in Adobe's security bulletin 11-12, which also has links to update downloads.

Norman recommends that affected users update their Adobe product as soon as possible.