Adobe Flash Player 11.5.502.110 Released for Microsoft Windows and Apple Mac OS X

Adobe Flash Player 11.5.502.110 has been released

Security Enhancements

• This update resolves buffer overflow vulnerabilities that could lead to code execution (CVE-2012-5274, CVE-2012-5275, CVE-2012-5276, CVE-2012-5277, CVE-2012-5280)

• This update resolves memory corruption vulnerabilities that could lead to code execution (CVE-2012-5279)

• This update resolves a security bypass vulnerability that could lead to code execution (CVE-2012-5278)

Fixed Issues

• Crash when playing back Adobe connect recording with screensharing(3348585)

• Flash Player crashes when navigating to and from Flash content in Internet Explorer (3322564)

• Install Application causes a crash and occasionally ipa.exe stops working(3298786)

• Flash Player shows white screen when using Webcam-feed(3337754)

New Features

• Debug stack trace in release builds of Flash Player

• Invoke Event enhancement

• Static linking of DRM (Desktop only)*

* Note: Static linking of DRM contributes to an increase in the size of the Flash Player binary

You can download Adobe Flash Player 11.5.502.110 from http://www.adobe.com

Mozilla Release Firefox 14.0.1 Browser Update

• NEW – Google searches now utilize HTTPS

• NEW – Full screen support for Mac OS X Lion implemented

• NEW – The Awesome Bar now auto-completes typed URLs

• CHANGED – Improved site identity manager, to prevent spoofing of an SSL connection with favicons

• DEVELOPER – Pointer Lock API implemented • DEVELOPER – New API to prevent your display from sleeping

• DEVELOPER – New text-transform and font-variant CSS improvements for Turkic languages and Greek

• FIXED – GIF animation can gets stuck when src and image size are changed (743598)

• FIXED – OS X: nsCocoaWindow::ConstrainPosition uses wrong screen in multi-display setup

• FIXED – CSS :hover regression when an element’s class name is set by Javascript

• SECURITY FIX – MFSA 2012-56 Code execution through javascript: URLs

• SECURITY FIX – MFSA 2012-55 feed: URLs with an innerURI inherit security context of page

• SECURITY FIX – MFSA 2012-53 Content Security Policy 1.0 implementation errors cause data leakage

• SECURITY FIX – MFSA 2012-52 JSDependentString::undepend string conversion results in memory corruption

• SECURITY FIX – MFSA 2012-51 X-Frame-Options header ignored when duplicated

• SECURITY FIX – MFSA 2012-50 Out of bounds read in QCMS

• SECURITY FIX – MFSA 2012-49 Same-compartment Security Wrappers can be bypassed

• SECURITY FIX – MFSA 2012-48 use-after-free in nsGlobalWindow::PageHidden

• SECURITY FIX – MFSA 2012-47 Improper filtering of javascript in HTML feed-view

• SECURITY FIX – MFSA 2012-46 XSS through data: URLs

• SECURITY FIX – MFSA 2012-45 Spoofing issue with location

• SECURITY FIX – MFSA 2012-44 Gecko memory corruption

• SECURITY FIX – MFSA 2012-43 Incorrect URL displayed in addressbar through drag and drop

• SECURITY FIX – MFSA 2012-42 Miscellaneous memory safety hazards (rv:14.0/ rv:10.0.6)

Adobe Flash Player 11.3.300.257 Released for Windows and Apple Mac OS X

Adobe Flash Player 11.3.300.257 has been released and includes the following new features:

• Full screen keyboard input — This feature enables support for all keyboard keys available to an embedded SWF running inside of a page without full screen mode (except for  ‘Esc’). It allows developers to determine if the app is in full screen, whether full keyboard input is allowed, and whether the app is able to request full screen (determined by the embed tag parameter)

• Low latency audio support for streaming audio through NetStream — This feature aims to reduce latency for high quality streaming audio playback. It addresses a very special use case of cloud gaming, where the game is rendered at a server and audio and video are streamed to the client

• Protected Mode for Firefox — Flash Player Protected Mode is a new security enhancement designed to limit the impact of attacks launched from malicious SWF files against Adobe Flash Player when running in Firefox 4.0+ on Windows Vista and higher. This feature is comparable to the Flash Player Protected Mode in Google Chrome browser, Protected Mode in Adobe Reader, and Office 2010 Protected View

• Flash Player background updates (Mac) — New versions of the runtimes can now be delivered more effectively to the end user with this enhanced updating mechanism (Background update is only available in the release versions of Flash Player)

• Low latency audio support (Sound API) — This enhancement reduces the latency for Sound.play method and changes to volume and pan on SoundTransform. The latency of SAMPLE_DATA event should also be reduced considerably

• Texture Streaming for Stage3D — Provides an ability to upload coarser, lower quality textures on the GPU first and then progressively improve them as more data becomes available