Adobe updates Flash Player to version 11.4 to address six new vulnerabilities
Close on the heels of a last-week issued update to its Flash player, Adobe revealed in a Tuesday announcement that it is now updating Flash Player to version 11.4, in order to fix six new vulnerabilities.
After having already released the 11.3 security update for Flash Player last week, Adobe said that the new update which it is rolling out is aimed at improving the ability of the developers to utilize hardware acceleration.
In its Tuesday advisory pertaining to the latest security update for Flash Player, Adobe said that the new set of six vulnerabilities affect all the Flash Player versions, including Windows, Macintosh, Linux, Google Chrome, as well as Android 4. x, 3. x and 2. x.
Pointing out that the flaws being fixed via the latest update affect the Flash multimedia application and AIR runtime, Adobe specified that the update fixes four memory corruption vulnerabilities - CVE-2012-4163, CVE-2012-4164, CVE-2012-4165 and CVE-2012-4166; one integer overflow vulnerability, CVE-2012-4167; and one cross-domain information leak vulnerability, CVE-2012-4168.
Noting that the last-week update for Flash Player patched CVE-2012-1535 vulnerability - specifically affecting Windows and Mac users - which apparently had been exploited in the wild for limited attacks, Adobe said in its advisory that the new update addresses "vulnerabilities that could cause a crash and potentially allow an attacker to take control of the affected system."