Omega Owners Forum

Please login or register.

Login with username, password and session length
Advanced search  

News:

Please play nicely.  No one wants to listen/read a keyboard warriors rants....

Pages: [1] 2  All   Go Down

Author Topic: A small WARNING - Flash player  (Read 1663 times)

0 Members and 1 Guest are viewing this topic.

TheBoy

  • Administrator
  • *****
  • Offline Offline
  • Gender: Male
  • Brackley, Northants
  • Posts: 107038
  • I Like Lockdown
    • Whatever Starts
    • View Profile
A small WARNING - Flash player
« on: 28 May 2008, 21:10:52 »

Sorry, I don't normally do such posts, but I know we have a lot of You Tubers here, and this one is making waves in the IT circles....   ....just be cautious until Adobe patch it.

http://blogs.zdnet.com/security/?p=1189
Logged
Grumpy old man

waspy

  • Guest
Re: A small WARNING - Flash player
« Reply #1 on: 28 May 2008, 21:12:03 »

Thanx TB  :y
Logged

Mr Skrunts

  • Get A Life!!
  • *****
  • Offline Offline
  • Gender: Male
  • Skruntie Land.
  • Posts: 25677
  • 3.O Elite Saloon with all the toys,
    • 2003 CD 2.2 Auto
    • View Profile
Re: A small WARNING - Flash player
« Reply #2 on: 28 May 2008, 21:13:19 »

Cheers TB.  Much appreciated.   :y :y
Logged
Ask yourself :  " WHY do I believe in what I believe?"

Remember that my opinions expressed here are not representative of the opinions of other members on the OOF Forum.

rad cap

  • Intermediate Member
  • ***
  • Offline Offline
  • Gender: Male
  • manchester
  • Posts: 397
    • View Profile
Re: A small WARNING - Flash player
« Reply #3 on: 28 May 2008, 21:14:55 »

that went right over my  :-Xhead. will stick to pen/paper
Logged

TheBoy

  • Administrator
  • *****
  • Offline Offline
  • Gender: Male
  • Brackley, Northants
  • Posts: 107038
  • I Like Lockdown
    • Whatever Starts
    • View Profile
Re: A small WARNING - Flash player
« Reply #4 on: 28 May 2008, 21:16:13 »

I should add yesterday's outage was related to this issue.
Logged
Grumpy old man

waspy

  • Guest
Re: A small WARNING - Flash player
« Reply #5 on: 28 May 2008, 21:27:55 »

Quote
I should add yesterday's outage was related to this issue.

Should we refrain from posting links to YT for a while  :-/ :question
Logged

TheBoy

  • Administrator
  • *****
  • Offline Offline
  • Gender: Male
  • Brackley, Northants
  • Posts: 107038
  • I Like Lockdown
    • Whatever Starts
    • View Profile
Re: A small WARNING - Flash player
« Reply #6 on: 28 May 2008, 21:32:20 »

Quote
Quote
I should add yesterday's outage was related to this issue.

Should we refrain from posting links to YT for a while  :-/ :question
I would be inclined to stay away from any sites that use Flash. Trouble is, a massive number of websites have been compromised in last few weeks using a very clever SQL injection script, and many of these compromised websites are being used to host Flash files that can exploit this vulnerability.  Thats why its so serious.
Logged
Grumpy old man

Jay w

  • Omega Baron
  • *****
  • Offline Offline
  • Gender: Male
  • Plymouth/Poole
  • Posts: 4319
  • omega gone
    • View Profile
Re: A small WARNING - Flash player
« Reply #7 on: 28 May 2008, 22:10:39 »

<-------mac user.......don't get viruses
Logged

JiMbOb789

  • Omega Knight
  • *****
  • Offline Offline
  • Gender: Male
  • Timaru, New Zealand
  • Posts: 1298
    • x4 Omegas
    • View Profile
Re: A small WARNING - Flash player
« Reply #8 on: 28 May 2008, 22:15:32 »

thanks TB :y
Logged
2001 Omega MV6 Sedan, 2003 Omega 3.2 Manual Estate Ex Plod, 1998 Omega CD Sedan, 2002 Omega MV6 Estate

Leomas

  • Intermediate Member
  • ***
  • Offline Offline
  • Gender: Male
  • Boyne Valley (on loan)
  • Posts: 302
  • Ooops what did I break this time?
    • View Profile
Re: A small WARNING - Flash player
« Reply #9 on: 28 May 2008, 23:32:18 »

Love my LINUX
Logged
Recently 'learned up' and being more careful now, honestly.
Ummm except for where I fix one thing and break something else

TheBoy

  • Administrator
  • *****
  • Offline Offline
  • Gender: Male
  • Brackley, Northants
  • Posts: 107038
  • I Like Lockdown
    • Whatever Starts
    • View Profile
Re: A small WARNING - Flash player
« Reply #10 on: 29 May 2008, 20:20:22 »

Quote
<-------mac user.......don't get viruses
The flaw exists in Mac versions, and Macs are vulnerable.  You still need to run software to stop nasties - the Mac isn't any more inherently secure, its just not as popular.
Logged
Grumpy old man

TheBoy

  • Administrator
  • *****
  • Offline Offline
  • Gender: Male
  • Brackley, Northants
  • Posts: 107038
  • I Like Lockdown
    • Whatever Starts
    • View Profile
Re: A small WARNING - Flash player
« Reply #11 on: 29 May 2008, 20:21:05 »

Quote
Love my LINUX
LOL, same goes, Linux is equally vulnerable.  Actually, probably more so, seeing as the kernel is rubbish ;D
Logged
Grumpy old man

PaulW

  • Omega Knight
  • *****
  • Offline Offline
  • Gender: Male
  • Somewhere near Manchester
  • Posts: 1769
  • Come on you fiend!
    • Some crappy Insignia
    • View Profile
Re: A small WARNING - Flash player
« Reply #12 on: 29 May 2008, 20:52:16 »

Quote
Quote
Love my LINUX
LOL, same goes, Linux is equally vulnerable.  Actually, probably more so, seeing as the kernel is rubbish ;D

The kernel is only as rubbish as the way its compiled :)  One reason I stick with Gentoo and don't bother with genkernel, but go through it all myself, never had an issue!

Altho stuff like Ubu, Redhat and Fedora are built so modular (and bloated to cover many many architectures), they add to themselves in regards to problems and performance hits...  Although out of those, Ubu does seem to be patched more often than the others.

The vulnerability though isn't down to kernel level, but purely down to the flash plugin itself.  Windows will get patched earlier (as-is), Linux will get patched some other time, but this exploit has mainly taken off since it was used to hack Vista.

http://securitywatch.eweek.com/exploits_and_attacks/vista_hacked_with_adobe_flash_vulnerability.html

Even so, as long as people keep up with various patches and security fixes (regardless of OS), then they should have no issues.

Although I do like the way that it was an Ubu machine which was left standing after 3 days :)  But then again, Linux never runs its environment or shell as root (unless its a complete cock-jockey of a sysadmin or inexperienced user running it as root and not another user, or they can't configure sudo properly)
« Last Edit: 29 May 2008, 20:56:02 by PaulW »
Logged
Humbugs...

Albatross

  • Omega Baron
  • *****
  • Offline Offline
  • Gender: Male
  • Bedford
  • Posts: 2100
  • An LSD &amp; an S2000!
    • View Profile
Re: A small WARNING - Flash player
« Reply #13 on: 29 May 2008, 21:15:00 »

Quote
Quote
Quote
Love my LINUX
LOL, same goes, Linux is equally vulnerable.  Actually, probably more so, seeing as the kernel is rubbish ;D

The kernel is only as rubbish as the way its compiled :)  One reason I stick with Gentoo and don't bother with genkernel, but go through it all myself, never had an issue!

Altho stuff like Ubu, Redhat and Fedora are built so modular (and bloated to cover many many architectures), they add to themselves in regards to problems and performance hits...  Although out of those, Ubu does seem to be patched more often than the others.

The vulnerability though isn't down to kernel level, but purely down to the flash plugin itself.  Windows will get patched earlier (as-is), Linux will get patched some other time, but this exploit has mainly taken off since it was used to hack Vista.

http://securitywatch.eweek.com/exploits_and_attacks/vista_hacked_with_adobe_flash_vulnerability.html

Even so, as long as people keep up with various patches and security fixes (regardless of OS), then they should have no issues.

Although I do like the way that it was an Ubu machine which was left standing after 3 days :)  But then again, Linux never runs its environment or shell as root (unless its a complete cock-jockey of a sysadmin or inexperienced user running it as root and not another user, or they can't configure sudo properly)

^^ TWW
Logged

TheBoy

  • Administrator
  • *****
  • Offline Offline
  • Gender: Male
  • Brackley, Northants
  • Posts: 107038
  • I Like Lockdown
    • Whatever Starts
    • View Profile
Re: A small WARNING - Flash player
« Reply #14 on: 29 May 2008, 21:35:44 »

Quote
Quote
Quote
Love my LINUX
LOL, same goes, Linux is equally vulnerable.  Actually, probably more so, seeing as the kernel is rubbish ;D

The kernel is only as rubbish as the way its compiled :)  One reason I stick with Gentoo and don't bother with genkernel, but go through it all myself, never had an issue!

Altho stuff like Ubu, Redhat and Fedora are built so modular (and bloated to cover many many architectures), they add to themselves in regards to problems and performance hits...  Although out of those, Ubu does seem to be patched more often than the others.

The vulnerability though isn't down to kernel level, but purely down to the flash plugin itself.  Windows will get patched earlier (as-is), Linux will get patched some other time, but this exploit has mainly taken off since it was used to hack Vista.

http://securitywatch.eweek.com/exploits_and_attacks/vista_hacked_with_adobe_flash_vulnerability.html

Even so, as long as people keep up with various patches and security fixes (regardless of OS), then they should have no issues.

Although I do like the way that it was an Ubu machine which was left standing after 3 days :)  But then again, Linux never runs its environment or shell as root (unless its a complete cock-jockey of a sysadmin or inexperienced user running it as root and not another user, or they can't configure sudo properly)
The design of Linux's kernel has issues, so compilation doesn't really make a difference to security, though does to performance and stability.

Its saving grace is it uses the Unix standard of nobody running as root (unless some dimwit does so as part of an ego trip), downside is *nix's way of all or nothing, so a number of common processes run with superuser rights, esp anyone daft enough to run X

Then added to the fact that Linux kernel tends to struggle at times to keep things running, and vital security processes stop running for no apparent reason, such as IPTABLES.  Trust me, losing IPTABLES on a directly internet gigabit connected server results in a very useful zombie for somebody   >:(
Logged
Grumpy old man
Pages: [1] 2  All   Go Up
 

Page created in 0.018 seconds with 16 queries.