Thursday, May 1, 2025
HomeComputer SecurityAdobe Released Security Updates & Fixed 43 Vulnerabilities in Acrobat Reader, Adobe...

Adobe Released Security Updates & Fixed 43 Vulnerabilities in Acrobat Reader, Adobe Flash & More

Published on

SIEM as a Service

Follow Us on Google News

Adobe security updates released for April with the fixes of 43 vulnerabilities that affected different Adobe products.

There are 8 different Adobe products are affected including Adobe Flash Player, Shockwave Player, Dreamweaver, Adobe XD CC, Adobe Experience Manager Forms, and Adobe Bridge CC.

In this case, Overall 21 adobe family vulnerabilities are fixed and 11 flaws marked as ‘Critical” severity and the Successful exploitation could lead to arbitrary code execution in the context of the current user.  

- Advertisement - Google News
Out-of-Bounds WriteArbitrary Code Execution  Critical    CVE-2019-7111 CVE-2019-7118 CVE-2019-7119 CVE-2019-7120 CVE-2019-7124
Type Confusion  Arbitrary Code Execution  Critical   CVE-2019-7117CVE-2019-7128
Use After Free  Arbitrary Code Execution  Critical   CVE-2019-7088CVE-2019-7112
Heap OverflowArbitrary Code Execution  Critical   CVE-2019-7113CVE-2019-7125

Adobe fixed all the 43 vulnerabilities for the following products.

At this time none of the vulnerabilities are currently being exploited in the wild.

According to Adobe. “Adobe has released security updates for Adobe Acrobat and Reader for Windows and macOS. These update address  critical and important vulnerabilities”

“Successful exploitation could lead to arbitrary code execution in the context of the current user.”

Adobe recommends users update their product installations to the latest versions using the instructions referenced in the bulletin.

Also, Adobe recommends users of the Adobe Flash Player Desktop Runtime for Windows, macOS and Linux update to Adobe Flash Player 32.0.0.171 via the update mechanism Adobe Flash Player Download Center.

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity updates.

Also Read:Creating and Analyzing a Malicious PDF File with PDF-Parser Tool

Balaji
Balaji
BALAJI is an Ex-Security Researcher (Threat Research Labs) at Comodo Cybersecurity. Editor-in-Chief & Co-Founder - Cyber Security News & GBHackers On Security.

Latest articles

Apache ActiveMQ Vulnerability Lets Remote Hackers Execute Arbitrary Code

A high vulnerability in Apache ActiveMQ’s .NET Message Service (NMS) library has been uncovered,...

Commvault Confirms Zero-Day Attack Breached Its Azure Cloud Environment

Commvault, a global leader in data protection and information management, has confirmed that a...

FBI Uncovers 42,000 Phishing Domains Tied to LabHost PhaaS Operation

The Federal Bureau of Investigation (FBI) has revealed the existence of 42,000 phishing domains...

Tor Browser 14.5.1 Released with Enhanced Security and New Features

The Tor Project has announced the official release of Tor Browser 14.5.1, introducing a...

Resilience at Scale

Why Application Security is Non-Negotiable

The resilience of your digital infrastructure directly impacts your ability to scale. And yet, application security remains a critical weak link for most organizations.

Application Security is no longer just a defensive play—it’s the cornerstone of cyber resilience and sustainable growth. In this webinar, Karthik Krishnamoorthy (CTO of Indusface) and Phani Deepak Akella (VP of Marketing – Indusface), will share how AI-powered application security can help organizations build resilience by

Discussion points


Protecting at internet scale using AI and behavioral-based DDoS & bot mitigation.
Autonomously discovering external assets and remediating vulnerabilities within 72 hours, enabling secure, confident scaling.
Ensuring 100% application availability through platforms architected for failure resilience.
Eliminating silos with real-time correlation between attack surface and active threats for rapid, accurate mitigation

More like this

Ivanti Released Security Update With The Fixes for Critical Endpoint Manager RCE Vulnerabilities

Ivanti, a prominent enterprise software provider, has issued an urgent security advisory today addressing...

CISA Released A Free Guide to Enhance OT Product Security

To address rising cyber threats targeting critical infrastructure, the U.S. Cybersecurity and Infrastructure Security...

Is this Website Safe: How to Check Website Safety – 2025

is this website safe? In this digital world, Check a website is safe is...