A large number of users, who regularly upgrade their Flash Player installations, remain exposed to Flash-based attacks, because the Flash plug-in bundled in Adobe Reader is not updated at the same time.
Since version 9.0, which was released a little over two years ago, in July 2008, Adobe Reader is capable of natively playing SWF (Shockwave Flash) files embedded in PDF documents.
This functionality is provided through a version of Flash Player bundled in Adobe Reader installations as a file called authplay.dll.
The immediate implication of this is that most, if not all, zero-day vulnerabilities discovered in Flash Player also affect Adobe Reader."According to Adobe, this also includes an updated version of the bundled Flash Player, but one has to wonder how long we would have had to wait if they weren't forced to issue the out-of-band release," Mr. Eiram, writes on the Secunia blog.
You can follow the editor on Twitter @lconstantin
This Blog Is Dedicated to
MY BESTIEST FRIENDS HASSAN SOHAIL
Labels
Blog Archive
-
▼
2010
(82)
-
▼
August
(65)
- Top 10 Fastest Bikes 2010
- Creative Concept Car Designs
- Top 10 Most Expensive Cars
- NASA to Test World’s Fastest Hypersonic ScramJet t...
- Top 10 Amazing Robots of Today
- Top 10 Gaming PCs 2010
- Pagani Zonda R breaks Ferrari’s Speed Record
- A look at BMW’s Vision Efficient Dynamics
- Amazing Bull-Shaped Motorbike
- Skylift - a new system for embarking on airplanes
- Free Call After 2 Minutes: Djuice
- Telenor TalkShawlk 5 Paisa Offer
- Jazz Bemisaal Ramadan Offer : Free after 1st Minute
- Made in China Fake Phones – What is The Reality
- Ufone Daily MMS Package
- SMS Bundle Offer
- Pakistan Text Messaging Growth Reaches 106 Billion
- Apple supports new high-end compact cameras
- Nokia Unveils Touch and Type Design Nokia X3
- PTCL Broadband Ramadan Offer
- Recover Deleted Files from NTFS and FAT Drives [Free]
- Message from Pakistan Cyber Army on Arrest of Pakb...
- Hacker’s Group ‘Pakbugs’ Got Arrested Today
- Free Minute Per Minute: Ufone
- Mobilink Jazz Reactivation Offer
- Black GTX 460: ECG High-End Graphics Card At An Af...
- Samsung Opens Service Center in Rawalpindi
- Mobilink Jazz Offers SMS Eid Khazana!
- Nokia Launches Ramadan Mobile Applications
- PTCL Vfone Grand Recharge
- PTCL brings Ramadan Offer!
- EA to Rollout Six New Games Soon
- Warid Donated Rs 800,000 in University Endowment F...
- F.E.A.R 3 Will Be Launched In the 3rd Quarter of 2010
- EA Sports Unveils New Screenshots of NFS: Hot Pursuit
- Mobilink Offers Unlimited SMS in Ramadan
- Official: PTCL Launches 9.3 Mbps EVO Nitro Device
- Call for 35 Paisas in Ramadan with Jazz!
- Samsung Applications Gaining Popularity
- Warid Launches its Video Portal
- MotherBoard Buying Guide
- Warid Offers Ramadan Hourly Package
- Nokia Announces Dual SIM, Low End Phones
- 1.2 GHz Dual Core CPUs Coming to Smartphones
- Origin Genesis: Best in Class, but Spares No Expense
- TRENDnet Launches USB 3.0 Adapters for Laptops and...
- JVC Presents iPhone and iPad Dock with Surround So...
- World's Smallest PC from Stealth Outperforms Some ...
- Videotel V2200 DVD Player Can Run 24 Hours a Day f...
- Samsung BD-C8000 - World's First 3D Full HD Portab...
- Zong’s Ramzan Value Time Offer call at Rs 2.99 + t...
- Nokia N8 Due in July?
- Huawei & PTCL signs nationwide strategic contract
- PTA to incept new SIM activation system
- Microsoft joins hands with FIA against IPR Infring...
- PTCL establishes free PCOs for IDPs
- Rumour Mill: Sony Ericsson Close to Announcing the...
- Our Future in Space
- Most Users Remain Vulnerable to Flash Exploits Aft...
- Download Opera 10.61 Final Build 3484
- Download Google Chrome 6.0 Beta – More Performance...
- Internet Explorer 9 (IE9) Beta Launch on September...
- Weekend Reading: PC Might Be Perfect Home for 3D G...
- Apple Manager Sells Company Secrets, Gets Arrested
- Kingston Finally Releases HyperX DDR3 With Water C...
-
▼
August
(65)
Sunday, August 15, 2010
Most Users Remain Vulnerable to Flash Exploits After Upgrading Flash Player
at
3:22 AM
Posted by
MOBEEN MAJEED and HASSAN SOHAIL
0
comments
Subscribe to:
Post Comments (Atom)
0 comments:
Post a Comment