Adobe announces patches for Reader and Flash

As expected, Adobe has released new versions of its Acrobat/Reader software to coincide with Microsoft’s Patch Tuesday for January 2013. Adobe also announced new versions of Flash today.

An Adobe Reader bulletin identifies new versions for the 9, 10 and 11 series of Reader software as 9.5.3, 10.1.5, and 11.0.1 respectively. Anyone who uses Adobe Acrobat/Reader software is strongly encouraged to install the appropriate new version. As usual, the new versions address security and crashing issues.

A Flash bulletin identifies the new version of Flash as 11.5.502.146. This version is for all web browsers except Chrome and Internet Explorer 10, which now use embedded Flash code. The most recent version of Flash in Google Chrome at this time is 11.5.31.137. The most recent version in Internet Explorer 10 is 11.3.378.5. As usual, the new versions address security and crashing issues.

Patch Tuesday for January 2013

Patch Tuesday comes early this month, since January started on a Tuesday. There are seven bulletins, addressing twelve issues in Windows, admin software and developer tools.

January 2013 bulletins

Flash Player fix for Internet Explorer 10

The Flash vulnerability reported on December 11 has finally been fixed in Internet Explorer 10.

Microsoft chose not to use the regular Flash plugin in Internet Explorer 10, deciding instead to integrate the player into the IE10 code. As a result, any time the Flash player is updated, Microsoft must make corresponding changes to IE10. Hence the delay in producing the patch for IE10. Google now does the same thing with their Chrome browser, but they tend to make the required changes much more quickly.

A guide for removing pre-installed crapware from Windows 8

Ars Technica has a useful post showing how to remove the useless software (crapware) that comes pre-installed on Windows 8 computers. The specific software of course varies between PC manufacturers, but the general idea is the same in all cases: most, if not all, of the software added by PC builders can be safely removed.

The approach used in this article is to reinstall Windows 8 from scratch, which is certainly an effective way to get rid of crapware. However, simply disabling and uninstalling said crapware is usually sufficient.

Fix for Internet Explorer 6/7/8 now available

Microsoft has issued a special “Fix It” patch for the recently-discovered vulnerabilities in older versions of Internet Explorer.

The original security advisory has been updated to include a link to the fix.

Anyone still using Internet Explorer 6, 7 or 8 should install the fix or stop using IE immediately.

Update 2013-Jan-05: According to the Internet Storm Center, the temporary workaround provided by this Fix-It from Microsoft has already been rendered ineffective by means of a bypass.