Flash Player plagued by third zero-day flaw in a month, updates coming

Adobe Systems warned users that hackers are exploiting another unpatched vulnerability in Flash Player—the third one in the past month—to infect computers with malware.

There are reports that the vulnerability is being actively exploited in drive-by-download attacks that target systems running Flash Player under Internet Explorer or Mozilla Firefox on Windows 8.1 and below, Adobe said in a security advisory published Monday.

The company plans to release Flash Player updates that will address the flaw later this week.

The vulnerability, which is tracked as CVE-2015-0313 in the Common Vulnerabilities and Exposures database, affects Flash Player on all supported platforms: Adobe Flash Player 16.0.0.296 and earlier versions for Windows and Mac OS X; Adobe Flash Player 13.0.0.264 and earlier 13.x versions; and Adobe Flash Player 11.2.202.440 and earlier versions for Linux.

To read this article in full or to leave a comment, please click here

Read more: Flash Player plagued by third zero-day flaw in a month, updates coming

Story added 2. February 2015, content source with full text you can find at link above.