HomeSecurityAdobe Flash Player 16.0.0.296 fixes two vulnerabilities

Adobe Flash Player 16.0.0.296 fixes two vulnerabilities

On Tuesday, Adobe published a full security advisory for Flash Player, noting that the revision includes a patch for a second vulnerability, which had not been reported.

Adobe Flash Player 16-0-0-296
One of the security vulnerabilities being patched is the infamous CVE-2015-0311 reported by French security researcher Kafeine, which infects users' computers with Bedep via the Angler exploit kit.

According to Adobe, it affects Flash Player 16.0.0.287 and earlier versions. Kafeine has warned that the exploit included in the Angler exploit kit works on all Windows systems running any version of Internet Explorer and Mozilla Firefox .

This vulnerability allows a threat to gain memory access and could lead to arbitrary code execution on the affected system.

The second vulnerability in FIash Player has been identified as CVE-2015-0312 and its successful exploitation could also lead to the possibility of executing arbitrary code.

The discovery of CVE-2015-0312 has been credited to “bilou” by the Chromium Vulnerability Rewards Program.

The new version of FIash Player is automatically installed in Google Chrome and Internet Explorer through their update mechanisms.

The same applies when the application is configured to receive security updates automatically. Manual installation of the software is also possible, using the resources provided by Adobe.

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS