Flash plugin 0-day vulnerability in the wild

poma pomidorabelisima at gmail.com
Fri Jan 23 11:44:23 UTC 2015


On 23.01.2015 10:51, Martin Stransky wrote:
> Folk,
> 
> There's a live 0-day flash vulnerability which is not fixed yet [1][2]. 
> If you use flash plugin I recommend you to enable the click-to-play mode 
> for it.

Are we covered with
$ rpm -q flash-plugin
flash-plugin-11.2.202.438-release.x86_64
?

Ref.
http://helpx.adobe.com/security.html

> 
> There's also a Fedora Firefox update with such change [3].
> 
> ma.
> 
> [1] 
> https://isc.sans.edu/diary/Flash+0-Day+Exploit+Used+by+Angler+Exploit+Kit/19213
> [2] 
> http://malware.dontneedcoffee.com/2015/01/unpatched-vulnerability-0day-in-flash.html
> [3] https://bugzilla.redhat.com/show_bug.cgi?id=1185241
> 



More information about the devel mailing list