All the latest UK technology news, reviews and analysis


Adobe posts patch for ColdFusion server flaw

17 Jan 2013
Adobe headquarters in San Jose

Administrators running Adobe ColdFusion are being advised to update their servers following the release of a security patch.

The company said that the update would address a handful privilege elevation in the web application server platform. The update covers both ColdFusion 9 and 10 builds for the Windows, Unix and OS X versions of the platform.

According to Adobe, the four flaws addressed in the patch could potentially allow a remote attacker to circumvent privacy controls on ColdFusion servers. In the most severe cases, an attacker would be able to assume total control over the targeted server.

Due to the nature of the vulnerabilities and because of reports that the flaws are being actively targeted in the wild, Adobe has given the patch its highest priority rating.

Adobe said that the top priority rating is usually reserved for serious flaws which are already or will likely soon be targeted in the wild.

Administrators can obtain the ColdFusion update from Adobe as a direct download. The company noted that ColdFusion 10 systems should have the "mandatory update" package installed before running the fix.

The release is the latest in what has been a busy week for security updates. Earlier this week Oracle issued a massive 86-patch security release, and the discovery of a new zero-day flaw in Java will likely necessitate another patch release in the coming days.

  • Comment  
  • Tweet  
  • Google plus  
  • Facebook  
  • LinkedIn  
  • Stumble Upon  
Shaun Nichols
About

Shaun Nichols is the US correspondent for V3.co.uk. He has been with the company since 2006, originally joining as a news intern at the site's San Francisco offices.

More on Security
What do you think?
blog comments powered by Disqus
Poll

Green IT poll

How important is it to your business that a cloud provider uses renewable energy like solar or wind to power their data centres?
19%
6%
5%
1%
69%

Popular Threads

Powered by Disqus
mike-schutz-microsoft-server-and-cloud-division

Microsoft's Mike Schutz discusses the firm's cloud computing strategy [Video]

V3 interviews Microsoft general manager for Windows Server and Management, Mike Schutz, to find out why customers should adopt the Private Cloud

Updating your subscription status Loading
Newsletters

Get the latest news (daily or weekly) direct to your inbox with V3 newsletters.

newsletter sign-up button
hpv3may

Getting started with virtualisation

Virtualisation can help you reduce costs, improve application availability, and simplify IT
management. However, getting started can be challenging

ibmv3may

Converting big data and analytics insights into results

Successful leaders are infusing analytics throughout their organisations to drive smarter decisions, enable faster actions and optimise outcomes

Sales Engineer / Pre Sales Consultant

Sales Engineer / Pre Sales Consultant needed for a permanent...

SAP BW BI Consultant

Für einen von unseren Top Kunden in der Region Bern suchen...

EMC Storage Engineer - Law Firm - City

Austin Fraser are searching for a strong EMC Storage...

Data centre Practice Lead / Presales Technical Specialist

Data centre Practice Lead / Presales Technical Specialist...
To send to more than one email address, simply separate each address with a comma.