Friday, December 17, 2021

Google Chrome New Update Available

Google have released version 96.0.4664.110 for Windows, macOS and Linux. In addition to other changes the new version contains fixes to five security vulnerabilities.

More information can be read from Google Chrome releases blog.

Adobe Premiere Rush Updated

Adobe have released an update to patch a bunch of vulnerabilities in Premiere Rush application. The vulnerabilities may allow arbitrary code execution in the context of the current user in the vulnerable system.

Affected versions:
Adobe Premiere Rush earlier than 1.5.16 version for Windows

More information in the related security bulletin here.

Adobe Experience Manager Updated

Adobe has released updated versions of their Experience Manager. Updates fix a bunch of vulnerabilities of which six categorized as critical (CVE-2021-43761, CVE-2021-40722, CVE-2021-43764, CVE-2021-43765, CVE-2021-44176, CVE-2021-44177) and two categorized as important (CVE-2021-43762, CVE-2021-44178). Successful exploitation of these could result in arbitrary code execution or security feature bypass.

Affected versions
Adobe Experience Manager (AEM)
- AEM Cloud Service (CS)
- 6.5.10.0 and earlier

More information from the Adobe's security advisory.

Adobe Connect Update Available

Adobe have released updated versions of Adobe Connect. This update resolves one important (CVE-2021-43014) categorized vulnerability. Successful exploitation could lead to arbitrary file system write.

Affected versions:
- Adobe Connect earlier than 11.4

More information can be read from Adobe's security bulletin.

Adobe Photoshop Vulnerabilities Fixed

Adobe have released new versions of Adobe Photoshop for Windows and macOS. These updates resolve security vulnerabilities of which some could lead to arbitrary code execution in the context of the current user.

Affected versions on Windows and macOS:
- Adobe Photoshop 2022 versions 23.x earlier than 23.1
- Adobe Photoshop 2021 versions 22.x earlier than 22.5.4

Instructions for updating are given in related security bulletin.

Adobe Prelude Update Available

Adobe have released an update to patch one critical (CVE-2021-43754) and one important (CVE-2021-44696) categorized vulnerability in their Prelude application. The vulnerability may allow arbitrary code execution in vulnerable system in the context of the current user.

Affected versions:
Adobe Prelude earlier than 22.1.1 version on Windows

More information in the related security bulletin here.

Adobe After Effects Updated

Adobe have released an update to patch critical vulnerabilities in their After Effects application. The vulnerabilities could allow arbitrary code execution in the context of the current user.

Affected versions:
- Adobe After Effects earlier than 22.1.1 version on Windows and macOS
- Adobe After Effects earlier than 18.4.3 version on Windows and macOS

More information in security bulletin.

New Adobe Dimension Version Released

Adobe have released an updated version of their Adobe Dimension. The new version fixes vulnerabilities of which some may allow arbitrary code execution in the context of the current user.

Affected versions
Adobe Dimension earlier than 3.4.4 version on Windows and macOS

More information in the correspondent security bulletin.

Adobe Premiere Pro Updated

Adobe have released an update to patch vulnerabilities in their Premiere Pro application. Five vulnerabilities, one critical and four moderate, were fixed. By exploiting the critical one (CVE-2021-40795) it may be possible to execute arbitrary code in vulnerable system.

Affected versions:
-Adobe Premiere Pro earlier than 22.1.1 version on Windows and macOS
-Adobe Premiere Pro earlier than 15.4.3 version on Windows and macOS

More information in the related security bulletin here.

Adobe Media Encoder Updated

Adobe have released updated versions of their Media Encoder. The new versions fix two critical and three moderate vulnerabilities. Exploiting the critical vulnerabilities it may be possible to execute arbitrary code in the target system.

Affected versions:
- Adobe Media Encoder versions earlier than 15.4.3 on Windows and macOS
- Adobe Media Encoder versions earlier than 22.1.1 on Windows and macOS

More information in related security bulletin.

Adobe Lightroom Updated

Adobe have released security update to fix a privilege escalation vulnerability (CVE-2021-43753) in Adobe Lightroom.

Affected versions:
*Lightroom earlier than 5.1 on Windows

Users of vulnerable versions are instructed to update their versions by using the Creative Cloud desktop app's update functionality (help).

More information about fixed vulnerability can be read from Adobe's security bulletin.

Adobe Audition Updated

Adobe have released an update to patch critical vulnerabilities in their Adobe Audition application. The vulnerabilities (CVE-2021-44697, CVE-2021-44698, CVE-2021-44699) may lead to privilege escalation.

Affected versions:
Adobe Audition 22.0 and earlier versions for Windows and macOS
Adobe Audition 14.4 and earlier versions for Windows and macOS

More information in the related security bulletin.

Microsoft Security Updates For December 2021

Microsoft have released security updates for December 2021.

Release notes of the updates can be viewed here.

Thursday, December 9, 2021

Google Chrome Vulnerabilities Fixed

Google have released version 96.0.4664.93 for Windows, macOS and Linux. In addition to other changes the new version contains fixes to 22 security vulnerabilities.

More information can be read from Google Chrome releases blog.

Mozilla Thunderbird Updated

Mozilla have released updated version of their Thunderbird email client containing some fixes to security vulnerabilities.

Affected versions:
- Mozilla Thunderbird earlier than 91.4.0 (advisory)

Fresh version can be obtained via inbuilt updater or by downloading from the product site.

Mozilla Firefox Updated

Mozilla have released updated versions of their Firefox web browser. New versions fix security vulnerabilities.

Affected versions:
-Mozilla Firefox earlier than 95 (advisory)
-Mozilla Firefox ESR 91.x earlier than 91.4.0 (advisory)

Fresh version can be obtained via inbuilt updater or by downloading (latest version) from the product site.