Adobe Air Bundles Vulnerable Flash

| No Comments | No TrackBacks

Secunia Personal Software Inspector reported a vulnerable version of Adobe Flash on my home computer.

It detected C:\Program Files\Common Files\Adobe AIR\Versions\1.0\NPSWF32.dll as version 9.0.124. Security bulletin APSB08-20 reports this is a vulnerable version.

I installed Adobe Reader 9 last week. I guess I forgot to get the AIR free version from ftp://ftp.adobe.com/pub/adobe/reader/win/9.x/9.0/enu/AdbeRdr90_en_US_Std.exe. AIR it seems has an old version of Flash, I'm not quite sure how to upgrade that. Since I didn't want AIR in the first place I'm uninstalling it.

update 11/17/2008
Adobe has now updated AIR

No TrackBacks

TrackBack URL: http://www.infosecblog.org/mt-tb20071121.pl/818

Leave a comment

Archives

Please contact me by leaving a comment where appropriate. Otherwise, you can click here to reveal an email address for me.
Got Backups? Get Safe Online Remember Rick Rescorla
Powered by Movable Type 4.31-en

About this Entry

This page contains a single entry by Roger published on November 16, 2008 8:32 PM.

Firefox/Seamonkey/Thunderbird Vulnerabilities was the previous entry in this blog.

SEP11 and CPU usage on Virtual Machines is the next entry in this blog.

Find recent content on the main index or look in the archives to find all content.