Do you use Photoshop? Does anyone who works for you use it? If so, you’ll want to apply the latest security patch immediately.
Two new vulnerabilities were discovered after the release of Adobe’s regularly scheduled August 2018 security patch update. This prompted the company to take the unusual step of releasing an emergency, out-of-band update to correct the issue.
These two newly discovered vulnerabilities (tracked as CVE-2018-12810 and CVE-2018-12811) impact Adobe photoshop CC2017, v18.1.5 and earlier 18.x versions, and Adobe Photoshop CC 2018, v19.1.5 and earlier 19.x versions.
It was discovered and initially reported by Kushal Arvind Shah, a security researcher with FortiGuard Labs. The vulnerabilities allow hackers to exploit a pair of critical memory corruption flaws, which allows a them to remotely execute malicious code on the target user’s machine.
Again, it must be stressed that neither of these issues were addressed by the company’s regularly scheduled patch update released earlier this month. Although if you haven’t yet applied that patch, you should. It addresses a total of eleven different security flaws spread across a number of the company’s products including: Flash Player, Acrobat, Reader, Experience Manager and Creative Cloud.
To get the fix for the Photoshop vulnerabilities, you’ll need to go to the company’s website and download the out of band patch designed specifically to address this issue.
It should be noted that both issues, while having been assigned a severity rating of “Critical,” have only been given a priority rating of three. This suggests that these flaws have not been exploited in the wild. That, however, is simply a matter of time. If members of your creative team employ Photoshop to generate graphics for your business, applying the latest patch should be a top priority. To do anything less is to invite an attack against your business.
President & CEO
I hope you enjoyed this article. My mission is to take your stress away from dealing with IT problems. Call (252) 565-1235 or send me a message at our contact us page if you have a question, comment or want help.
Intel has had a tough time of things so far this year. The most recent trouble stems from yet another newly discovered security flaw in the company’s processors, bearing the inelegant name of “L1 Terminal Fault,” or “Foreshadow” by those who have discovered it.
Nothing bad could possibly happen to your company’s network if the only piece of information the hackers have is your fax number, right?
File this one away under “unintended consequences.” There’s a newly emerging trend in the medical community called “Snapchat Dysmorphia” that’s leaving plastic surgeons around the country to sound the alarm, and in some cases, scratch their heads in disbelief.
How seriously does the average consumer take data theft? It’s an interesting (and fair) question, and one that Radware recently attempted to answer when the company sent out surveys. They contacted more than three thousand people to conduct its recent survey titled “Consumer Sentiments: Cybersecurity, Personal Data and the Impact on Customer Loyalty.”
These days, we expect giant corporations, government agencies and medical facilities to be the targets of hackers. However, golf is something new.
Android 9 is finally here, at least for some users. As of today, if you have any of the following phones, you can get the latest update:
Microsoft recently found itself on the receiving end of more than a little user rage when they made significant changes to Skype, with the release of version 8. The company’s original plan was to model Skype 8 after several different social media services, but the users found the new interface to be both annoying and frustrating.