QUOTE
A critical vulnerability exists in the current versions of Flash Player (v9.0.159.0 and v10.0.22.87) for Windows, Macintosh and Linux operating systems, and the authplay.dll component that ships with Adobe Reader and Acrobat v9.x for Windows, Macintosh and UNIX operating systems. This vulnerability (CVE-2009-1862) could cause a crash and potentially allow an attacker to take control of the affected system. There are reports that this vulnerability is being actively exploited in the wild via limited, targeted attacks against Adobe Reader v9 on Windows.
Adobe has released product updates to Adobe Flash Player to resolve the relevant security issues.
Adobe has released product updates to Adobe Flash Player to resolve the relevant security issues.
Adobe also expects to release updates to Adobe Reader and Acrobat soon See this Adobe bulletin for details:
http://www.adobe.com/support/security/bull.../apsb09-10.html
QUOTE
Adobe recommends users of Adobe Flash Player 9.x and 10.x and earlier versions update to Adobe Flash Player 9.0.246.0 and 10.0.32.18. Adobe recommends users of Adobe AIR version 1.5.1 and earlier versions update to Adobe AIR 1.5.2.
To determine which version of Flash your browser is using visit:
http://www.adobe.com/products/flash/about/
The latest Flash version 10.0.32.18 can be installed from:
http://www.adobe.com/go/getflash
Uncheck the box for Google toolbar (not required for flash player)