Adobe Flash vuln CVE-2014-9163

Due to overwhelming demand, we have created a forum just dedicated to Toughbook users who use Linux!
Post Reply
Message
Author
User avatar
kode-niner
Posts: 700
Joined: Sat Jun 07, 2014 7:39 am
Location: Canada

Adobe Flash vuln CVE-2014-9163

#1 Post by kode-niner »

Everybody needs to update Adobe Flash immediately: security bulletin CVE-2014-9163 . This one's pretty nasty. Not a big deal for Windoze and Mac users to update, but Linux is a bit more involved, as usual.
http://web.nvd.nist.gov/view/vuln/detai ... -2014-9163
http://helpx.adobe.com/security/product ... 14-27.html

Now I'm on Debian as most of you know, and I typically use testing and sid repositories. I'd expect to find the latest release of flashplugin-nonfree but NO! You have to get it directly from Adobe until it makes it's way to our repos. Considering this vulnerability is being exploited in the wild for a few days already, I am seriously annoyed that no updates have been pushed to non-free repos and I have no choice but to update manually.

First, check your version here:
https://www.adobe.com/software/flash/about/
or here:
http://helpx.adobe.com/flash-player.html
If you do not have 11.2.202.425 ( I had 11.2.202.424 until a short while ago ) then you need to download it from here:
http://get.adobe.com/flashplayer/

You're fine on RPM or YUM based package managers. You're even o.k. on Ubuntu. On Debian and for everyone else, you have to download the tar.gz and figure it out yourself. The file is meant to be extracted from the root directory and the libflashplayer.so copied to one or more locations. Let me know if anybody needs help on this.
Daily drives a CF-31

User avatar
mklym
Posts: 907
Joined: Fri Feb 22, 2013 3:10 pm
Location: Edmonton, Alberta

Re: Adobe Flash vuln CVE-2014-9163

#2 Post by mklym »

Thanks for the heads up. Zorin had the update, as well as others, this morning. Now to check the other distros I run.
CF-29LTQ,CF-31SBM,CF-52youngGUN,

Life's Journey is not to arrive safely at the grave in a well preserved body, but rather to skid in sideways totally worn-out shouting 'Woo Hoo! What a ride!

Motorsports - the only real sport. If it doesn't have a motor, it is just a game.

There is always something waiting at the end of the road, if you are not willing to see what it is, you probably shouldn't be out there in the first place.

Post Reply

Return to “The LINUX forum!!!”