Adobe has just released a new version of Flash Player. The new Flash Player 22.0.0.192 fixes 36 security issues, including a zero-day that is currently being used in attacks.
The vulnerability was discovered by Kaspersky Labs and expert Costin Raiu reported that the hackers used the Flash zero-day to cause a memory corruption bug in the Flash Player's memory, which allowed them to execute malicious code on the victim's computer and take control of the device.
In addition to the zero-day (CVE-2016-4171), the company fixed other Flash exploits such as CVE-2016-4117 and CVE-2016-0147. The latter was another zero-day exploit that Adobe had reported as having been patched in April.
The updates are currently available for all three platforms: Windows, Mac and Linux. The updated version of Adobe Flash Player for Windows and Mac is 22.0.0.192, while for Linux distributions it is 11.2.202.626.
