Guru3D.com
  • HOME
  • NEWS
    • Channels
    • Archive
  • DOWNLOADS
    • New Downloads
    • Categories
    • Archive
  • GAME REVIEWS
  • ARTICLES
    • Rig of the Month
    • Join ROTM
    • PC Buyers Guide
    • Guru3D VGA Charts
    • Editorials
    • Dated content
  • HARDWARE REVIEWS
    • Videocards
    • Processors
    • Audio
    • Motherboards
    • Memory and Flash
    • SSD Storage
    • Chassis
    • Media Players
    • Power Supply
    • Laptop and Mobile
    • Smartphone
    • Networking
    • Keyboard Mouse
    • Cooling
    • Search articles
    • Knowledgebase
    • More Categories
  • FORUMS
  • NEWSLETTER
  • CONTACT

New Reviews
Fractal Design Pop Air RGB Black TG review
Palit GeForce GTX 1630 4GB Dual review
FSP Dagger Pro (850W PSU) review
Razer Leviathan V2 gaming soundbar review
Guru3D NVMe Thermal Test - the heatsink vs. performance
EnGenius ECW220S 2x2 Cloud Access Point review
Alphacool Eisbaer Aurora HPE 360 LCS cooler review
Noctua NH-D12L CPU Cooler Review
Silicon Power XPOWER XS70 1TB NVMe SSD Review
Hyte Y60 chassis review

New Downloads
Intel ARC graphics Driver Download Version: 30.0.101.1743
AMD Radeon Software Adrenalin 22.6.1 WHQL driver download
GeForce 516.59 WHQL driver download
Media Player Classic - Home Cinema v1.9.22 Download
AMD Chipset Drivers Download v4.06.10.651
CrystalDiskInfo 8.17 Download
AMD Radeon Software Adrenalin 22.6.1 Windows 7 driver download
ReShade download v5.2.2
HWiNFO Download v7.26
7-Zip v22.00 Download


New Forum Topics
Tensor Core equivalent Likely to Get Embedded in AMD rDNA3 FSR Thread AMD is planning to release Ryzen 7000 CPUs in September [3rd-Party Driver] Amernime Zone Radeon Insight 22.5.1 WHQL Driver Pack (Released) Extreme 4-Way Sli Tuning NVIDIA GeForce 516.59 WHQL driver download & Discussion PlayStation 3 emulator increases its CPU performance by 30% with AVX-512 Windows 11 Release Build AMD Radeon Software - UWP AMD Radeon Software Adrenalin 22.6.1 - Driver download and discussion




Guru3D.com » News » Adobe Patches Flash Bugs, Attackers Targeted Firefox Users

Adobe Patches Flash Bugs, Attackers Targeted Firefox Users

by Hilbert Hagedoorn on: 03/01/2013 10:06 AM | source: | 7 comment(s)
Adobe Patches Flash Bugs, Attackers Targeted Firefox Users

If you are a Firefox user and missed the update released yesterday, Adobe has patched three security flaws that specifically targeted the Mozilla Firefox browser.Adobe patched three new security flaws in its near-ubiquitous Flash Player, of which two were already being exploited in the wild. Attackers were specifically targeting Mozilla Firefox users, the company said. 

The two zero-day vulnerabilities, CVE 2013-0643 and CVE 2013-0648, were being exploited in targeted attacks where users were tricked into clicking on a link to a Website hosting malicious Flash files, Adobe said in its security advisory released Tuesday. The company did not credit any organization or researcher who found the zero-day vulnerabilities, but credited IBM X-force for reporting the third security hole..

Adobe security engineers at the RSA Conference also declined to provide any additional information. “The exploit for Cve 2013-0643 and CVE 2013-0648 is designed to target the Firefox browser,” Adobe said in the advisory. Attackers could trigger the vulnerabilities to cause Flash Player to crash and gain remote control of the computer, Adobe said. The zero-day bugs are related to a permissions issue with the Flash Player Firefox sandbox and a flaw in the ExternalInterface ActionScript feature, which can be exploited to execute malicious code. The third, currently not yet being exploited, bug was a buffer overflow vulnerability in a Flash Player broker service, and could be used to execute malicious code, Adobe said. The update affects all versions of Flash on Windows, Mac OS X, and Linux. Users can download the latest version from the Adobe website, or turn on background updates and let the software grab the version automatically. Google and Microsoft will update Flash on Chrome and Internet Explorer 10 (for Windows 8) separately.







« Corsair H90 Gets Tested and a Review · Adobe Patches Flash Bugs, Attackers Targeted Firefox Users · 3DMark 11 is now fully compatible with Windows 8 »

2 pages 1 2


Veeshush
Senior Member



Posts: 1095
Joined: 2010-11-28

#4540973 Posted on: 03/01/2013 10:34 AM
For my main browser I have all plugins, such as Java, Flash, Shockwave etc disabled. If I do run across anything that needs flash I just download it (like say a video or game) or open it in a secondary browser.

For those that have a hard time keeping up with all the updates while maintaining their sanity:
https://browsercheck.qualys.com/

TheDeeGee
Senior Member



Posts: 7916
Joined: 2010-08-28

#4540979 Posted on: 03/01/2013 10:44 AM
For my main browser I have all plugins, such as Java, Flash, Shockwave etc disabled. If I do run across anything that needs flash I just download it (like say a video or game) or open it in a secondary browser.

For those that have a hard time keeping up with all the updates while maintaining their sanity:
https://browsercheck.qualys.com/

If i had to use the internet like that id just unplug my lan cable and be done with it.

Veeshush
Senior Member



Posts: 1095
Joined: 2010-11-28

#4540987 Posted on: 03/01/2013 11:03 AM
Well, I don't come across too many flash things for what I do.

sverek
Senior Member



Posts: 6073
Joined: 2011-01-02

#4541002 Posted on: 03/01/2013 11:33 AM
Well, I don't come across too many flash things for what I do.


of course, all you need is a terminal and curl.

Rich_Guy
Senior Member



Posts: 12785
Joined: 2003-05-11

#4541112 Posted on: 03/01/2013 01:54 PM
Well this one works, been stuck on 11.4.402.265, as the update after that wouldn't work, couldn't use the net as it just kept hanging. :P

2 pages 1 2


Post New Comment
Click here to post a comment for this news story on the message forum.


Guru3D.com © 2022