12 Jul 2007
Adobe has released updates that patch security holes in two of the company's most popular products.
The patches fix three vulnerabilities in the free Flash player plug-in and two in Photoshop. Publicly available exploit code for the flaws has been found on the web.
The two Photoshop vulnerabilities were first disclosed in late April by a security researcher known as 'Marsu'.
The disclosures include code for exploits which could allow an attacker to successfully execute malicious code on a target system via a specially crafted 'bmp', 'dib' or 'rle' document file.
Secunia rated both vulnerabilities as 'highly critical', the firm's second highest threat classification. The flaws affect versions CS2 and CS3 of Photoshop, and one of the flaws also affects Photoshop Elements 5.0.
The set of three patches for the Flash player browser plug-in were also rated by Secunia as 'highly critical'. The patch affects versions 7, 8 and 9 of the player.
The most severe of the vulnerabilities could allow an attacker to remotely execute code on a target system, while another flaw could allow an attacker to access sensitive user information.
If left unpatched, the Flash player vulnerabilities could put millions of users worldwide at risk.
Adobe estimated earlier this year that 98.7 per cent of internet users worldwide had some version of the plug-in.
Both patches are available from Adobe's Security Bulletins and Advisories website.
Latest stories from Security
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
We have been given the privilege of recruiting for a...
My client is a proprietary, electronic trading firm and...
Our client is looking for a Senior Project Manager (Telecoms...
Business Analysts are being sought by my leading financial...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?