Adobe released security update to address multiple security vulnerabilities
On May 9th, Adobe officially released the May security update, which fixed several security vulnerabilities including Adobe Connect, Adobe Creative Cloud Desktop Application, and Adobe Flash Player, which also included security bypass and arbitrary code execution such as high-risk flaws.
Summarized as follows:
Product | CVE | Vulnerability impact | severity |
Adobe Connect | CVE-2018-4994 | Sensitive information leakage | Important |
Adobe Cloud Desktop Application | CVE-2018-4992 | Privilege increase | Important |
CVE-2018-4873 | |||
CVE-2018-4991 | Security bypass | Critical | |
Adobe Flash Player | CVE-2018-4944 | Arbitrary code execution | Critical |
solution
Adobe has fixed the above vulnerabilities in the monthly update released on May 9. Users should update and upgrade the protection.
The security version information is summarized as follows:
Product | Secure version |
Adobe Connect | 9.7.5 |
Adobe Cloud Desktop Application | Creative Cloud 4.5.0.331 |
Adobe Flash Player | 29.0.0.171 |