Adobe has released Version 32.0.0.101
of Adobe Flash Player and AIR for Windows, macOS, Linux and Chrome OS. one
critical vulnerability in Adobe Flash Player and one
important vulnerability in Adobe Flash Player installer. Successful exploitation could lead to Arbitrary Code Execution and privilege escalation in the context of the current user respectively.
Adobe is aware of reports that an exploit for CVE-2018-15982 exists in the wild.
Release date: December 5, 2018
Vulnerability identifier: APSB18-42
Platform: Windows, Macintosh, Linux and Chrome OS
Vulnerability Category |
Vulnerability Impact |
Severity |
CVE Number |
Use after free |
Arbitrary Code Execution |
Critical |
CVE-2018-15982 |
Insecure Library Loading (DLL hijacking) |
Privilege Escalation |
Important |
CVE-2018-15983 |
Flash Player
- Assorted security and functional fixes
Update:
*Important Note: Downloading the update from the Adobe Flash Player Download Center link includes a pre-checked option to install unnecessary extras, such as McAfee Scan Plus or Google Drive. If you use the download center, uncheck any unnecessary extras that you do not want. They are not needed for the Flash Player update.
Verify Installation
To verify the Adobe Flash Player version number installed on your computer, go to the
About Flash Player page, or right-click on content running in Flash Player and select "About Adobe Flash Player" from the menu.
Do this for
each browser installed on your computer.
To verify the version of Adobe Flash Player for Android, go to Settings > Applications > Manage Applications > Adobe Flash Player x.x.
References
Remember - "A day without laughter is a day wasted."
May the wind sing to you and the sun rise in your heart...