Adobe released security update to address multiple security vulnerabilities

Adobe Flash Player

On May 9th, Adobe officially released the May security update, which fixed several security vulnerabilities including Adobe Connect, Adobe Creative Cloud Desktop Application, and Adobe Flash Player, which also included security bypass and arbitrary code execution such as high-risk flaws.

Summarized as follows:

Product CVE Vulnerability impact severity
Adobe Connect CVE-2018-4994 Sensitive information leakage Important
Adobe Cloud Desktop Application CVE-2018-4992 Privilege increase Important
CVE-2018-4873
CVE-2018-4991 Security bypass Critical
Adobe Flash Player CVE-2018-4944 Arbitrary code execution Critical

solution

Adobe has fixed the above vulnerabilities in the monthly update released on May 9. Users should update and upgrade the protection.

The security version information is summarized as follows:

Product Secure version
Adobe Connect 9.7.5
Adobe Cloud Desktop Application Creative Cloud 4.5.0.331
Adobe Flash Player 29.0.0.171