Dave Carabetta Blog Banner


November 14, 2006

Important Adobe Flash Player 9 Security Update Released


This Security Bulletin was just posted to the Adobe site regarding a security exploit in the Flash Player. From the bulletin:

Adobe has provided an update to resolve vulnerabilities in Adobe Flash Player. These vulnerabilities would allow remote attackers to modify HTTP headers of client requests and conduct HTTP Request Splitting attacks. The flexibility of the attack varies depending on the type of web browser being used.

Apparently, Flash Player 7, 8, and 9 are all affected, but there is only an update available for version 9 at the moment. I should also note that the fix has been marked as "Important," which is one step below their highest severity level of "Critical," so definitely look into upgrading if possible.

For any Flash or Flex developers who rely on the Debug version of the player for development, Adobe unfortunately makes it hard to find the updated Players on their site, so here you go.



Comments
James Holmes's Gravatar Thanks muchly for the heads up and the link to the debug versions; I'm knee deep in Flex 2 right now so that's saved me a lot of hassle.
# Posted By James Holmes on 11/14/06 at 7:30 PM
Dave Carabetta's Gravatar No problem James. Glad I could help!
# Posted By Dave Carabetta on 11/14/06 at 7:44 PM

© Dave Carabetta, 2005-2010. This blog licensed under the Creative Commons License. Some rights reserved. This is a personal weblog. The opinions expressed here represent my own and not those of my employer. Blog software provided by Raymond Camden.