From PC World: Adobe Systems fixed nine vulnerabilities in Flash Player that allow attackers to record users’ keystrokes or take complete control of their computers.
These are Flash Player updates you’ll want to install, unlike the malicious one served from the North Korean news agency site.
The updates, Flash Player 16.0.0.257 for Windows and Mac and Flash Player 11.2.202.429 for Linux, address seven remote code execution vulnerabilities, an information disclosure flaw that can be exploited to capture keystrokes and a lower-risk file validation issue.
The company also included the fixes in its Flash Player Extended Support Release (ESR), an older Flash Player version used by organizations that prefer stability over new functionality. The updated ESR version is 13.0.0.260.
Users of Google Chrome and Internet Explorer on Windows 8 or 8.1 will automatically receive the Flash Player updates through the update mechanisms of those browsers.
View: Article @ Source Site