Critical vulnerability found in Adobe Flash Player

Airbot

----------------------
VIP
SF Team
Local time
1:53 PM
Messages
18,396
Adobe has posted a security advisory for Adobe Reader, Acrobat and Flash Player. The company states that a critical vulnerability is present in the current versions of Flash Player (v9.0.159.0 and v10.0.22.87) for Windows, Macs and UNIX operating systems and the authplay.dll component that ships with Adobe Reader and Acrobat v9.x on the same operating systems.
more..
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Airbot 2.0
OS
Windows 7 Ultimate x64 SP1
CPU
Core i7 920 (D0) @ 4Ghz, *26c idle *65c full load on air
Motherboard
Asus P6X58D Premium - Sata 6Gb/s - USB 3.0
Memory
12GB DDR3 Corsair Dominator -CMD12GX3M6A1600C8 at 1600MHz
Graphics Card(s)
Zotac Geforce GTX 770
Sound Card
ASUS Xonar D2X
Monitor(s) Displays
1 LG 24" Flatron W2453V-PF 1 Samsung 24" P2450H both 2ms RT
Screen Resolution
1920x1080@60hz
Hard Drives
1 Samsung 250GB 840 Evo SSD
1 OCZ Vertex2 180GB SSD
1 TB Samsung Spinpoint F1 7200RPM 32MB cache
2 500GB WD Caviar Blacks 7200RPM 32MB cache (WD5001AALS)

Pioneer DVD Burner DVR-S18M
PSU
Corsair HX1000W
Case
Cooler Master HAF 932
Cooling
Case Fans *3 230mm, *1 140mm/CPU - *Tuniq Tower 120 Extreme
Keyboard
Logitech Wireless MK700
Mouse
Logitech Wireless MK700
Internet Speed
DL 15 Mbps UL 0.98 Mbps
Antivirus
None
Browser
Firefox Nightly
Other Info
Processor-7.7 *RAM- 7.9 *Graphics-7.9 *Gaming Graphics- 7.9 *SSD- 7.8 W.E.I final score= 7.7
*Phone- LG Nexus 5
Adobe really needs to rewrite Flash and Shockwave from the ground-up now...

Especially Flash since you need a dual-core PC to actually view Flash videos without the annoying buffering in YouTube, especially on Windows XP.

On the otherhand, I can view Silverlight content perfectly smooth and clear on the same XP PC...
 

My Computer My Computer

Computer Manufacturer/Model Number
HP Compaq Presario C762NR
OS
Windows 7™ Home Premium x64/Sony PS3 XrossMediaBar™ FW 3.30/Sony PSP XrossMediaBar™ FW 6.20
CPU
Intel Pentium Dual-Core T2370 (1.73GHz/533MHz FSB/1MB Cache)
Motherboard
HP 30D9
Memory
Kingston HyperX 2GB/Hyundai 512MB (2.5GB/667MHz)
Graphics Card(s)
Intel GMA X3100 (GM965 Express/384MB VRAM)
Sound Card
Conexant HD SmartAudio 221
Monitor(s) Displays
Samsung 15.4" WXGA HD BrightView
Screen Resolution
1280*800
Hard Drives
Hitachi TravelStar 160GB (5400RPM/1.5GB)
Keyboard
HP MultiMedia Keyboard
Mouse
Microsoft Wireless Notebook Optical Mouse 3000
Internet Speed
Comcast (16MB)
Sites really need to start adopting silverlight.
 

My Computer My Computer

Computer Manufacturer/Model Number
self built
OS
Windows 7 Professional 64-bit
CPU
Intel E8400 3GHz
Motherboard
Intel DX48BT2
Memory
Kingston PC3-10700H 4Gb
Graphics Card(s)
XFX Radeon HD 5850 BlackEd.
Sound Card
Asus Xonar DG
Monitor(s) Displays
2x Samsung SM-T220HD 22"
Screen Resolution
1680x1050 on two monitors
Hard Drives
OCZ Vertex 2 120gb 3.5" (OS)
Seagate Momentus XT 500gb
Samsung F3 1Tb (games)
2x Samsung F1 1Tb
PSU
Thermaltake ToughPower 850w
Case
Thermaltake Armor
Cooling
Scythe Mugen II
Keyboard
Microsoft Comfort Curve USB
Mouse
Razer Diamondback 3G
Internet Speed
8128/443
how do you make silverlight your default player thing? can you make it your default it firefox?
 

My Computer My Computer

Computer Manufacturer/Model Number
Compaq Presario CQ60-215DX
OS
Windows 7 Home Premium
CPU
2 AMD Athlon 64 X2
Graphics Card(s)
NVIDIA GeForce 8200M G graphics
from what i know they are different formats and so they are not compatible...
as for me yes i hate the fact that the its forced me to run with High performance just to play youtube (with being able to play 720p and 1080p content through DXVA at power saver or balanced...) which i really hate...;)

and thanks for the update
thats why i love flashblock....:p
 

My Computer My Computer

Computer Manufacturer/Model Number
Tx2500z Tablet Pc/Homemade Server
OS
Windows 7 Ult x64(x2), HomePrem x32(x4), Server 08 (+VM), 08 R2 (VM) , SuSe 11.2 (VM), XP 32 (VM)
CPU
Turion X2 ultra (oh well came with laptop)/P4 @3.2 (yes P4)
Motherboard
IDK HP Motherboard / Intel DG965SS
Memory
OCZ Dual Channel 4GB kit/ 1gb Dual Channel
Graphics Card(s)
HD 3200 graphics /GMA x3100 (yay for intergrated!!)
Sound Card
Realtek HD Audio(mic working, well sort of)/Siig IC-70012
Monitor(s) Displays
built-in Hp 12" laptop screen/ Acer 19"
Screen Resolution
1280x800 /1440x900
Cooling
All Air Cooled
Mouse
Logi MX Rev. /MS Wheel Optical 1.1A /Logitech Optical Mouse
Internet Speed
College baby but its still routed through vpn to 1536k...
Other Info
love my wacom pen and pressure sensitivity...
wished it worked in 7, SUSE for that matter though
Adobe Product Security Incident Response Team (PSIRT)

We evaluated the impact of the vulnerable versions of the Microsoft Active Template Library (ATL) / CVE-2009-0901, CVE-2009-2395, CVE-2009-2493 / Microsoft Security Advisory (973882) on the Adobe product portfolio. We determined that Flash Player and Shockwave Player are the two products that leverage vulnerable versions of ATL. A Security Advisory for Flash Player and a Security Bulletin for Shockwave Player have been posted to our security bulletins and advisories page.
PSIRT has determined that the Adobe Reader browser plug-in for Internet Explorer, Connect Pro, Flash Lite for mobile devices, LiveCycle SAP Forms and other products are NOT vulnerable to CVE-2009-0901, CVE-2009-2395, or CVE-2009-2493.
Note that only Internet Explorer plug-ins are vulnerable. Thus, people using Flash Player within the Firefox browser -- as well as all other Windows-based browsers (that aren't Internet Explorer) -- are not vulnerable. Additionally, Flash Player and Shockwave Player on Macintosh, Linux and Solaris operating systems are not vulnerable.
Per the Shockwave Player Security Bulletin, this vulnerability has been patched in the latest version of Shockwave Player, which is now available for download (Adobe - Adobe Shockwave Player). Per the Security Advisory for Flash Player, this vulnerability will be patched in the scheduled July 30, 2009 update of Flash Player.
Users should consider installing MS09-034. As a defense-in-depth measure, this Internet Explorer security update helps mitigate known attack vectors within Internet Explorer for those components and controls, such as Flash Player and Shockwave Player, that have been developed with vulnerable versions of ATL as described in Microsoft Security Advisory (973882) and Microsoft Security Bulletin MS09-035.
We will continue to provide updates on this issue via the Security Advisory section of the Adobe web site, as well as the Adobe PSIRT blog.
This posting is provided "AS IS" with no warranties and confers no rights.

Bold added by me.

This is reassuring. Lately I've taken to not installing any plug-ins into IE. I use it mainly to only check links for problems.
 

My Computer My Computer

OS
Windows 7
and thanks for the update
thats why i love flashblock....:p

Agreed.......and "No Scripts", .....two x milli-second, stop and thinks!:huh:
 

My Computer My Computer

Computer Manufacturer/Model Number
Acer Aspire Timeline X Laptop - Model 5820TG - V1.23
OS
Windows 7 Home Premium x64 - SP1
CPU
Intel Core i5 @ 2.67GHz Arrandale 32nm Technology
Motherboard
Acer JM51_CP (CPU) Base Board Version
Memory
8 GB RAM [2 x 4 GB DDR3]
Graphics Card(s)
AMD Radeon HD 6650M, Intel (R) HD Graphics
Sound Card
Realtek HD Audio, ATI HD Audio Device
Monitor(s) Displays
Acer Aspire Notebook - 15.7"; Acer LCD Monitor X223Wsd - 22"
Screen Resolution
1366 x 768 x 60Hertz
Hard Drives
Notebook - 733GB Western Digital WDC WD7500BPVT- 22HXZT1 Sata.
External HDs [4];Maxtor One Touch4 - 500GB External HD [Drive M:\].Western Digital WDXMS1200TA - 120GB External HD. WD My Book 'Elite' 1TB External HD [Windows 7 dedicated - Partitioned
Mouse
Logitech Wireless V320 for Notebooks
Other Info
Brother MFC-465CN; PC to Fax/Scan/Copy/Photo Multi Function Centre. Epson Perfection V300 Photo Scanner.
Siemens Speedstream 6520 Router.
Wacom 'Bamboo Fun' CTE-650 PC Tablet, Stylus and Mouse. Logitech X-230 Notebook Stereo Speakers and Sub-woofer.
UAC - On. Internet - FireFox v13.0.1 & IE8.
Hon.RSM to the 4th [Assault Pioneer] Troop Pune Sepoys , and 3rd Troop Jodhpur Bengali Lancers
This is reassuring. Lately I've taken to not installing any plug-ins into IE. I use it mainly to only check links for problems.

That ATL bug affects millions of developed applications not just Flash, flashblock and NoScript will not save you from this one ;)
 
Back
Top