Become a MacRumors Supporter for $50/year with no ads, ability to filter front page stories, and private forums.

MacRumors

macrumors bot
Original poster
Apr 12, 2001
67,646
38,077



Adobe-Flash-250x250.png
Adobe this week released Flash Player version 24.0.0.221 to "address critical vulnerabilities that could potentially allow an attacker to take control of the affected system," including Mac, Windows, Linux, and Chrome OS.

Mac users with Flash Player version 24.0.0.194 or earlier installed should immediately update to the latest version using the built-in update mechanism. The update is also available from the Adobe Flash Player Download Center.

Flash Player users who had enabled the option to "allow Adobe to install updates" will receive the update automatically. Likewise, Google Chrome will automatically update Flash Player to version 24.0.0.221. Select "About Google Chrome" under the Tools menu to verify the browser is up-to-date.

Adobe said the critical security update resolves integer overflow, memory corruption, type confusion, heap buffer overflow, and use-after-free vulnerabilities that could lead to code execution. The vulnerabilities were reported by security teams from Google, Microsoft, Palo Alto Networks, and Trend Micro.

Safari on macOS Sierra deactivates Flash by default, only turning on the plug-in when user requested. Chrome, Firefox, and most other modern web browsers also have web plug-in safeguards in place due to repeated security risks. Adobe has released fifteen Flash Player security updates over the past year.

In 2010, Apple co-founder Steve Jobs shared his "Thoughts on Flash," in which he favored open web standards such as HTML5 over Adobe Flash. Jobs said Flash Player was "the number one reason Macs crash," while criticizing its performance on mobile devices. "Flash was created during the PC era - for PCs and mice," he opined.

Article Link: Adobe Issues Critical Security Update for Flash Player on Mac
 
I'm amazed at how many places still require flash even today. They probably outsourced the stuff years ago and can't/won't pay for an update to anything modern. Little do they know they're opening themselves up to huge security holes themselves. Probably already are and still don't know it.
 
Flash.. The number one virus deployment vector on the Mac.
Adobe has been trying to patch this piece of Swiss cheese ever since they bought it from Macromedia...Decades ago. It's never ending. I think it's fair to say that flash is the most dangerous piece of software to have installed on the mac.
 
Just don't install it and keep Chrome as a side-browser (if Safari is your main one).
Then you use Chrome's native Flash plugin which I trust more.

That's exactly what I've done since I got new system last year and reinstalled from scratch.
 
  • Like
Reactions: tonyr6
Register on MacRumors! This sidebar will go away, and you'll see fewer ads.