ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Macromedia investigates Flash security

Will Knight ZDNet.co.uk

Published: 04 Jan 2001 15:24 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Software giant Macromedia is investigating reports that its Flash Player plugin for Internet browsers could allow malicious hackers access to computers connected to the Internet.

An advisory reported to the popular security mailing list Bugtraq on 2 January that a flaw in Flash -- which allows Internet users to playback multimedia content embedded into Web pages -- could enable a malicious user to launch an attack.

The advisory suggests the software has a buffer overflow vulnerability, which gets around the program's built in security. This could allow unauthorised, potentially malicious, code to be executed on a PC.

A spokeswoman for Macromedia says that the company's technical staff are investigating the situation. "It is a serious issue but there have been issues in the past that have arisen and there has not been a flaw," says the spokeswoman. "We need to look into it before we can comment."

Although the author of the alert suggests the vulnerability could be exploited to upload viruses, Trojan horses or other malicious code to a computer with Flash installed, one security expert thinks most users are safe.

"Its unlikely, based on past history," says Eric Chien, chief researcher at SARC, Symantec's Antivirus Research Centre. Chien says that providing Macromedia provides a swift patch and users install it, there is little danger. He believes, however, that virus writers may start exploiting this sort of vulnerability before long.

According to Macromedia's own figures Flash is used by 96 percent of all Web users.

Take me to Hackers.

Have your say instantly, and see what others have said. Click on the TalkBack button and go to the ZDNet News forum.

Let the editors know what you think in the Mailroom. And read what others have said.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
25 out of 52 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:











Related Jobs

Flash / Actionscript Web Developer 30-35k Gloucester

Huxley Associates are looking for an experienced Flash / Actionscript Web Developer to work for our exclusive client based in Gloucester. Required ...

Flash Actionscript Developer

My client in Bath is looking for a highly experienced flash developer to carry out web development on an exciting new project. You will need to be ...

Flash Developer - Media Agency

One of Huxley Associates clients based in central London have the requirement to add a flash developer to their team for a 3 month contract starting ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Mobile Security Expert: Your Camera Ph...

Mobile Security Expert: Your Camera Phone Got Hacked Author: Eric Everson, Founder MyMobiSafe.com Have you ever heard someone say “I’d like to be a fly on the wall in that room.”?... More

Post a comment

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment